Timeline
Every post and feed across this instance
-
Une vie à soi : Léa, Brico Butch
Le parcours de Léa, lesbienne et ouvrièreAprès avoir fait des études littéraires sans grand élan, tout en enchaînant les petits boulots pour payer son loyer, Léa, 29 ans est devenue électricienne. Peu de temps avant, elle avait fait son coming out et s'était coupé les cheveux. Depuis, elle sillonne tout Paris sur son vélo pour effectuer petits et grands travaux d'électricité, chez des femmes et des personnes queers. Léa nous raconte comment elle a trouvé son chemin, à la fois en tant que lesbienne butch et en tant qu'ouvrière. Et quel regard féministe elle porte sur son travail.
Remerciements
Label Gouine
Avec :- Léa
Pour aller plus loin :- Film documentaire « De rêves et de parpaings » (2024)
Enregistrements
Juillet 2025Prise de son, montage, textes et voix
Charlotte BienaiméRéalisation et mixage
Gary SalinCommunity Manager
Meyrélie MilhavetIllustrations
Anna Wanda Goguseyflex2.acast.com -
La vie des seins
A quel sein se vouer ?Les seins : toujours érotisés, jamais vraiment libérés. Symbole de la féminité et objet de désir érotique, le sein n'échappe pas aux images standardisées dont nous sommes abreuvés. Pendant que les hommes jouent au volley torse-nu, la pratique du topless est le plus souvent prohibée, voire perçue comme de l'exhibitionnisme. Dans ce premier volet de deux épisodes consacrés aux seins, Charlotte Bienaimé tend le micro à des femmes qui témoignent du rapport compliqué qu'elles ont entretenu avec leur poitrine. Céline, 37 ans, a laissé tomber son soutien-gorge depuis plus de 15 ans et milite pour libérer les seins dans l'espace public. Marie, 48 ans, a vaincu un cancer du sein et a dû subir une mastectomie. Elle a résisté aux nombreuses injonctions à se faire reconstituer le sein et affirme sa volonté de "rester comme ça, en amazone" pour ne jamais oublier ce qu'elle a vécu. Leur témoignage est alimenté par les réflexions de l'anthropologue Corinne Fortier et de la sociologue Anasatisia Meidani. Celles-ci remettent en question la place des seins dans notre société, relégués uniquement à des fonctions érotiques ou maternelles.
Avec :
- Céline et Marie
- Corinne Fortier, anthropologue
- Anastasia Meidani, sociologue
Textes :
- « Les seins de Sophie » , Yveline Dupuy, Éditions Albin Michel, 2010.
- « Putain », Nelly Arcan, Éditions du Seuil, 2001.
- « Journal du Cancer », Audre Lorde, Éditions Mamamelis, 2001.
Remerciements :
- Cinzia Greco
- Cynthia Ka
- Gala Avanzi
Ressources :
- « Masculinités et féminités face au cancer », sous la direction de Anastasia Meidani
- « Vivre avec un corps asymétrique », Cinzia Greco
- « Sein, reconstruction, et féminité. Quand les amazones s'exposent », Corinne Fortier
- « Seins. En quête d'une libération », Camille Froidevaux-Metterie
- « No bra », Gala Avanzi
- Compte Instagram de Cynthia, autour de l'autopalpation et du bien être après/avant un cancer
- Compte Instagram de Marie
- Pour la reconnaissance de la reconstruction à plat_ Impatiente (le podcast) par Maëlle Sigonneau et Mounia El Kotni.
- Impatiente (le livre), Une exploration féministe du cancer du sein, par Mounia El Kotni et Maëlle Sigonneau
- « Le Sein, une histoire », Marilyn YalomBonne nouvelle, Un podcast à soi se décline en livre ! Du micro à la plume, Un livre à soi de Charlotte Bienaimé nous donne à lire ce qui fait les questions d’aujourd’hui : le sexisme ordinaire, la grossophobie, le rôle des pères, la transidentité, les luttes sociales, l’écoféminisme, le prix du sexe ou encore l’horloge biologique. Un livre ARTE Éditions / Stock, disponible en librairie.
Enregistrements
novembre 2021Prise de son, montage, textes et voix
Charlotte BienaiméRéalisation et mixage
Samuel HirschMusique originale
Samuel HirschLectures
Emma BroughtonSélection des textes et accompagnement éditorial
Sarah BénichouIllustrations
Anna Wanda GoguseyProduction
ARTE Radioflex2.acast.com -
Une vie à soi : Pride de Calais
À Calais, pour la marche des fiertésComment c’est la vie à Calais, lorsqu’on est LGBTQIA+ ? Comment on se sent dans une ville où le candidat du Rassemblement National a été élu à plus de 53% des voix aux dernières élections législatives et où les militant.e.s luttent à la frontière depuis des années contre des politiques migratoires répressives ? Qu’est ce que ça fait de manifester, de danser et de chanter les fiertés dans les rues, parfois pour la première fois ? Comment se retrouver, s’organiser ?
Dans le contexte politique actuel de cette rentrée 2024, avec une forte présence du RN à l’Assemblée Nationale, et avec une libération de la parole homophobe, lesbophobe et transphobe cet épisode fait entendre les échos de la deuxième édition de la Marche des fiertés de Calais, qui s’est déroulée la veille du premier tour des élections de juin dernier.
Alors pour se donner du souffle, de la force et de l’espoir, écoutons ces voix LGBTQIA+, féministes et queer qui articulent de nombreuses luttes dans une colère joyeuse.
Avec :Les organisatrices et organisateurs de la Marche des fiertés de Calais et les manifestant.e.s.
Liens :
- Amours queers face au fascisme ;- Le site, le compte Facebook et Instagram de la Marche des fiertés de Calais ;
- Le collectif féministe de Calais ;
- Reportages à Calais : Calais la sociale ;
- La Timbale, fabrique coopérative calaisienne ;
Enregistrements
juin 2024Prise de son, montage et voix
Charlotte BienaiméRéalisation et mixage
Annabelle BrouardAccompagnement éditorial
Sarah BénichouIllustrations
Anna Wanda Goguseyflex2.acast.com -
Femmes noires et flamboyantes
Classe, genre, raceDepuis quelques années, en France, une nouvelle génération de femmes noires prennent la parole, s'organisent. Qu'il s'agisse des normes de beauté, de santé mentale, de représentation, du travail, des violences sexistes ou gynécologiques, elles racontent les expériences spécifiques qu'elles vivent, les politisent et réfléchissent à des moyens d'actions.
Leurs travaux et leurs combats m'ont permis de comprendre à quel point il était nécessaire d'articuler les questions de sexe, de race et de classe. Mais aussi de réfléchir à mes privilèges, en tant que femme blanche et aux types de domination que je pouvais exercer.
Dans cet épisode, je vous propose un aller-retour entre les Etats-Unis et la France. Entre les voix et les luttes du black feminisme, inspirantes, et celles de l'afro-féminisme français, renouvelées, pour entendre et comprendre ce que vivent les femmes noires et penser un féminisme décolonisé, décentré.
Avec :
- Sandra Sainte Rose et La fanfare 30 nuances de noires
- Kiyemis, auteure de "A nos humanités révoltées"
- Stella Tiendrebeogo, psychologue, organisatrice des rendez vous Sexcare
- Audrey Warrington, afroféministe, auteure du blog Badassmaman et co-créatrice des rendez vous sexcare
- Diariatou Kébé, auteure de "Maman noire et invisible"
- Karima Ramdani, Docteure en science politique
Auteure de l'article "Bitch et beurette, quand féminité rime avec liberté"
- Malika Mansouri, Psychologue clinicienne en protection de l'enfance et maître de conférences en psychologie, et en politique transculturelle à l'université Paris Descartes
Auteure de "Révoltes post coloniales au coeur de l'Hexagone "
- Nassira Hedjerassi, Professeur des universités à Reims
Auteure de la préface de l'ouvrage "De la marge au centre" de bell hooks
- Myriam Paris, Doctorante en science politique
Travaille sur une thèse sur l'Union des femmes de la Réunion de 1946 à 1981
Lectures :
- "Regards", " Les négresses sales" "Temps crépuscule" de Kiyemis
- "L'oeil le plus bleu" de Tony Morisson
- "Ne suis je pas une femme" Sojourner Truth dans "Ne suis je pas une femme" de Bell HooksBonne nouvelle, Un podcast à soi se décline en livre ! Du micro à la plume, Un livre à soi de Charlotte Bienaimé nous donne à lire ce qui fait les questions d’aujourd’hui : le sexisme ordinaire, la grossophobie, le rôle des pères, la transidentité, les luttes sociales, l’écoféminisme, le prix du sexe ou encore l’horloge biologique. Un livre ARTE Éditions / Stock, disponible en librairie.
Enregistrement
mars 2018Prise de son, montage, textes et voix
Charlotte BienaiméRéalisation et musique originale
Samuel HirschLectures
Laure GiappiconiIllustrations
Anna Wanda GoguseyProduction
ARTE Radioflex2.acast.com -
Une vie à soi : Nicole
Nicole est pêcheuse de crevette à DunkerqueNicole, 63 ans, est une des rares femmes pêcheuse de crevettes à Dunkerque. Ancienne ouvrière du textile et mère de six enfants, elle trouve dans cette pratique réservée aux hommes une échappatoire, un moment de paix. L'eau soigne son corps abîmé par le travail en usine, les maternités et le travail domestique. Nicole est aussi championne du monde de décorticage de crevettes ! Elle raconte qu'elle a pu gagner 10 fois ce concours grâce au travail en usine, qui lui a fait exercer sa rapidité et sa dextérité. Les médias soudain parlent d'elle. Nicole se voit reconnue hors du cercle domestique. Une récompense ? Une revanche ? Un plaisir ?
Au-delà de l'image folklorique de la pêche à la crevette, cet épisode d'Un podcast à soi / Une vie à soi interroge le rapport au temps, au travail domestique, à la reconnaissance. Et donne à entendre des résistances invisibles.
Pour prolonger l'écoute :
- Un podcast à soi n°16 : Du pain et des roses
- « Quotidien Politique », Geneviève Pruvost, Editions La Découverte
- Domesticités
- Sans queue ni tête, Film en chantier de Julien Brygo
- Sur la planche, un film de Leïla KilaniBonne nouvelle, Un podcast à soi se décline en livre ! Du micro à la plume, Un livre à soi de Charlotte Bienaimé nous donne à lire ce qui fait les questions d’aujourd’hui : le sexisme ordinaire, la grossophobie, le rôle des pères, la transidentité, les luttes sociales, l’écoféminisme, le prix du sexe ou encore l’horloge biologique. Un livre ARTE Éditions / Stock, disponible en librairie.
Enregistrements
mai 22Prise de son, textes et voix
Charlotte BienaiméMontage, réalisation, mixage et musique originale
Samuel HirschSélection des textes, réseaux sociaux et accompagnement éditorial
Sarah BénichouIllustrations
Anna Wanda GoguseyProduction
ARTE Radioflex2.acast.com -
À nos joies féministes
Alors que nous entendons encore si souvent que les féministes seraient trop en colères, aigries, tristes et rabat-joie. Alors que la période politique pèse lourd sur les mouvements féministes et queers. Cet épisode fait entendre des histoires de joies, à travers les parcours de personnes déjà rencontrées pour l’émission. Que sont-elles devenues ? Comment les luttes les ont transformé.e.s ? Sans nier les difficultés et les obstacles, l’épisode s'interroge sur ce que la joie féministe raconte et ce qu'elle permet ? Comment les luttes féministes nous affectent et quel potentiel cela représente ?
Tout au long de l'épisode, vous entendez les voix de La chorale Flying Mint (page Facebook), et de La chorale Nos lèvres révoltées (page Facebook).
Chansons :
- Nos lèvres révoltées : « Nous marchons » - Alice, 2023
- Nos lèvres révoltées : « Sciur padrum » : Chanson de mondines - repiqueuses de riz à la fin du XIXème siècle, plaine du Pô, Italie
- Nos lèvres révoltées : « La marche des lesbiennes » - Paroles : Raphaëlle Legrand, 2000 / Musique : Marin Marais "Marche des matelots" opéra "Alcyone", 1706
- Flying Mint : « Ejaculate », chorale Hot Bodies de Bruxelles
- Flying Mint : « Sorcières », paroles : Flying Tiger, musique de Gérald Kurdian
- Flying Mint, Meute des louvxes : « Gare au bois »
- Flying Mint : « Damn Gaze », paroles : Flying Mint, musique : Sélée
Avec :
- Patricia, Esther, Mathilde, Tal, Nina, Yelena, Mélanie
- Joelle Sambi, poétesse
- Kiyemis, poétesse (site internet)
- Fania Noel, sociologue (site internet)
- Fanny Gallot, historienne
- Ludivine Bantigny, historienne
- Geneviève Pruvost, sociologue
- La chorale Flying Mint (page Facebook)
- La chorale Nos lèvres révoltées (page Facebook)
Textes :
- « Joie militante », Carla Bergman, Nick Montgomery ;
- « Grèves et joie pure », Simone Weil ;
- « Et vos corps seront caillasses » Joëlle Sambi
Pour prolonger l'écoute :
- « Rends la joie », « À nos humanités révoltées », « Je suis votre pire cauchemard » et « Et, refleurir » de Kiyemis ;
- « Notre corps nous-mêmes » ;
- « We are coming » de Nina Faure ;
- « Mobilisées ! » de Fanny Gallot ;
- Grève féministe en Suisse ;
- « Affects et émotions dans l’engagement révolutionnaire » de Ludivine Bantigny ;
- « Et maintenant le pouvoir » de Fania Noel ;
- « Manuel de la rabat-joie féministe » et « The cultural politics of emotion » de Sara Ahmed ;
- « L’art de la joie », de Golliarda Sapienza.
Remerciements :
Merci à Carla Bergman, autrice, Yoram Krakowski, psychologue engagé, Sarah Benichou, journaliste ; à Camille.Enregistrements
juillet, août 2024Prise de son, montage, textes et voix
Charlotte BienaiméRéalisation et mixage
Annabelle BrouardLectures
Joelle Sambi et Estelle Clément BéalemAccompagnement éditorial
Sarah BénichouIllustrations
Anna Wanda GoguseyProduction
ARTE Radioflex2.acast.com -
Prendre soin, penser en féministes le monde d'après
Crise du covid et utopies au prisme du genreLa crise du Covid a mis au-devant de la scène de nombreuses femmes, autrefois invisibles, qui exercent en grande majorité ces métiers dits « du care », essentiels à la marche de notre monde. Elles sont aides-soignantes travaillant en Ehpad, infirmières, aides à domicile, institutrices, caissières, nounous, agentes d'entretien... Leur travail est habituellement peu considéré, peu rémunéré, voire dévalorisé.
Au-delà de la célébration ponctuelle, cet épisode cherche à leur rendre hommage, pour ne pas oublier leurs histoires et leurs voix aussi vite qu'elles ont été mises en lumière. Il interroge aussi plus largement la notion de soin : qui prend soin de qui ? Est-ce que le care n'est pas aussi une question de classe ? Comment ont été soigné.e.s les habitantes et habitants des quartiers populaires ?
Et au-delà encore, comment prend-on soin ? Qu'en est-il du soin que l'on porte aux morts ? Mais aussi au monde vivant, et aux animaux ? Et pourquoi tout cela nous amène à parler de vulnérabilité, de pouvoir et d'utopies concrètes ?
Un épisode choral, où vous pourrez retrouver des voix déjà entendues dans les épisodes précédents. Il clôture notre troisième saison, et lance des pistes de réflexions pour le retour d'Un podcast à soi en 2021, après le congé maternité de Charlotte Bienaimé.
Avec :
- Nadège, aide-soignante dans un Ehpad de l'Est de la France.
- Pascale Molinier, psychologue, autrice de nombreux ouvrages sur l'éthique et le travail du care
- Vinciane Despret, philosophe
- Hanane, féministe, lesbienne, militante des quartiers populaires, membre du collectif Femmes en lutte 93
- Myriam Bahaffou, chercheuse, militante écoféministe
- Emilie Hache, philosophe
- Cy Lecerf Maulpoix, journaliste et militant queer, spécialiste des questions écoqueer.
Textes :
- Monologue du virus, Lundi matin
- Starhawk, « The fifth sacred thing »/ La cinquième chose sacrée (Traduction Juliette Hamon)
- Ursula K. Le Guin, A left-handed commencement address (Traduction Juliette Hamon)
- Donna Haraway, « Manifeste des espèces compagnes »
- Françoise d'Eaubonne, « Les bergères de l'apocalypse »
Musiques :
- Chanson sans peur de Vivir Quintana accompagnée par El Palomar
- La danse des bombes, sur un texte de Louise Michel par la chorale Les chianteuses - Captation : bisounours deter - Mixage : Jean Tevenin
Remerciements :
- Sandra Laugier
- Mathilde Goanec
- No anger
- Juliette Rennes
- Adel Tincelin : retrouvez son texte écrit pour l'épisode en cliquant sur "Télécharger le transcript"
- Sarah Ben
Liens :
- Pascale Molinier, Le travail du care. Édition 2020, La Dispute, « Le genre du monde », Paris, 2020
- Le soucis des autres. Ethiques et politiques du care, Sandra Laugier, Patricia Paperman
- « Touche pas à nos vieux » Cinq concepts pour penser le vieillissement
- Au bonheur des morts, Vinciane Despret
- Réenchanter la mort, Alexa Hagerty
- Le monstre politique, Blog d'Hanane
- Portrait d'Hanane dans Komitid
- Caféministe avec Myriam Bahaffou
- Myriam Bahaffou sur France Inter
- Ce à quoi nous tenons, propositions pour une écologie pragmatique
- Sensibilités climatiques, entre mouvances écoféministes et queer
- Les sociétés matriarcales, Heide Goettner-Abendroth
- Thread de ressources sur le monde féministe d'aprèsBonne nouvelle, Un podcast à soi se décline en livre ! Du micro à la plume, Un livre à soi de Charlotte Bienaimé nous donne à lire ce qui fait les questions d’aujourd’hui : le sexisme ordinaire, la grossophobie, le rôle des pères, la transidentité, les luttes sociales, l’écoféminisme, le prix du sexe ou encore l’horloge biologique. Un livre ARTE Éditions / Stock, disponible en librairie.
Enregistrements
mai 20Prise de son,montage, textes et voix
Charlotte BienaiméRéalisation et mixage
Samuel HirschMusique originale
Samuel HirschLectures
Estelle Clément BéalemSélection des textes, traductions et accompagnement éditorial
Juliette HamonIllustrations
Anna Wanda GoguseyProduction
ARTE Radioflex2.acast.com -
Paysannes en lutte 1/2
Premier volet : Travailleuses invisiblesMarie Edith, Gwennen et Charlotte sont éleveuses de vaches laitières près de Rennes. Depuis quelques années, elles se retrouvent, avec d’autres paysannes, au sein du groupe « Les elles ». Elles y partagent leurs expériences, leurs peines et leurs espoirs : sexisme dans le monde agricole, difficile articulation du travail salarié et travail domestique, vie de couple liée au travail paysan sur la ferme... Elles se forment aussi pour mieux maitriser machines agricoles et tracteurs et réfléchissent à de nouveaux outils plus ergonomiques.
Ce groupe a suscité de fortes prises de conscience et a permis la mise en place d’entraides solides entre femmes, dans un monde où le travail des paysannes est encore largement invisibilisé. Leurs paroles, articulées à celles des rares chercheuses travaillant sur les agricultrices et le monde de la subsistance, permet d’éclairer la place des femmes dans ce métier où l’imbrication entre travail salarié et travail domestique est particulièrement fort.
Avec :
- Marie-Edith, Gwennen, Charlotte et les membres du groupe femme Les Elles
- Clémentine Comer, docteure en science politique
- Geneviève Pruvost, sociologue du travail et du genre
Remerciements :
- Emilie Serpossian et Clémentine Comer
- Le groupe femme Civam 44
Lectures :
- « Choses délicieuses », Anjela Duval, trad. Paol Keineg
- « Une femme », Annie Ernaux, Éditions Gallimard, 1988
- « La peine et le plaisir », Anjela Duval, trad. Paol Keineg
Ressources :
- Clip « L’invisible gronde », Les Elles
- Quotidien Politique, Geneviève Pruvost, Éditions La Découverte, 2021
- « Retour sur les « agricultrices » : des oubliées de la recherche et du féminisme », Rose Marie Lagrave, 2021
- « L’ennemi principal : Économie politique du patriarcat », Christine Delphy, 2013
- « On est pas là pour casser du mâle », Clémentine Comer, 2017
- « Luttes d’agricultrices ou d’épouses au travail », Clémentine Comer, 2017
-Film Croquantes, TessLye Lopez et Isabelle Mandin, 2022
- Groupe femmes « Les Elles »
- Groupes femmes des CIVAM
- Sortir du rang, Julie Francoeur, Les éditions du remue-ménage, 2023
- « Subsistance », Geneviève Pruvost, 2023Bonne nouvelle, Un podcast à soi se décline en livre ! Du micro à la plume, Un livre à soi de Charlotte Bienaimé nous donne à lire ce qui fait les questions d’aujourd’hui : le sexisme ordinaire, la grossophobie, le rôle des pères, la transidentité, les luttes sociales, l’écoféminisme, le prix du sexe ou encore l’horloge biologique. Un livre ARTE Éditions / Stock, disponible en librairie.
Enregistrements
septembre 2023Prise de son, montage, textes et voix
Charlotte BienaiméRéalisation et mixage
Arnaud ForestLectures
Laure GiappiconiAccompagnement éditorial
Sarah BénichouIllustrations
Anna Wanda GoguseyProduction
ARTE Radioflex2.acast.com -
Tout sur nos mères (1/2) : Mémoires de filles
Les liens mères-filles dans l'enfancePourquoi certaines femmes ont peur de ressembler à leurs mères ? Pourquoi d'autres ne parviennent plus à prendre leurs mères dans les bras ? Qu'est ce qui se joue lors de l'enfance, l'adolescence ? Qu'est ce que le patriarcat fait aux liens mères-filles ?
C'est la question que je me suis posée dans ce premier volet de l'épisode « Tout sur nos mères » : « Mémoires de filles ».
Avec des récits de filles, notamment Claire Richard, Camille Kouchner et Joëlle Sambi, qui se souviennent de leurs enfance auprès de leurs mères, difficiles ou plus flamboyantes.
Avec :
- Joëlle Sambi, autrice, poétesse, féministe, activiste lesbienne.
- Claire Richard, productrice de fictions et documentaires radios, autrice du livre Pardonner à nos mères
- Claire Bourdille, activiste enfantiste, autrice de Enfantisme, il est temps de respecter les enfants
- Camille Kouchner, autrice de La familia Grande et Immortels
- Annie Ferrand, psychologue féministe
- Coline Cardi, sociologue
Lectures :
- Une femme, Annie Ernaux
- La familia Grande, Camille Kouchner
- Bufuku, Joëlle Sambi (à paraître)
Pour aller plus loin :
- Pardonner à nos mères, Claire Richard
- Naître d'une femme, Adrienne Rich (prochainement traduit par les éditions Hors d'atteinte)
- La même mère, Monique Plaza
- Pour te ressembler, Christine Détrez
- Nos mères, Christine Détrez
- Rien ne s'oppose à la nuit, Délphine de Vigan
- La bonne mère, Mathilda di Matteo
- Dites lui que je l'aime, Romane Bohringer
- La vie soignée, Meryem Alqamar
- L'effet maternel, Virginie Linhart
- Trauma, en finir avec nos violences, Juliet Drouar
Remerciements :
Christine Détrez
Juliet DrouarEnregistrements
février 2026Prise de son, montage, textes et voix
Charlotte BienaiméRéalisation et mixage
Gary SalinLectures
Estelle Clément BéalemAccompagnement éditorial
Sarah BénichouCommunity Manager
Meyrélie MilhavetIllustrations
Anna Wanda Goguseyflex2.acast.com -
Une vie à soi : Angelina
Angelina, femme de ménage, une vie de violences et de libertésCharlotte Bienaimé vit seule avec ses deux jeunes enfants. Elle réalise depuis bientôt 5 ans « Un podcast à soi ». Angelina est aide à domicile et femme de ménage. Elle travaille chez Charlotte. Tout les sépare, à commencer par leur statut de patronne et d'employée. Certaines expériences les rapprochent pourtant. Elles discutent beaucoup. Pour "Un podcast à soi", Charlotte tend le micro à Angelina pour qu'elle raconte sa vie : ses parents incarcérés, les hommes violents, le travail du soin et du ménage, la découverte d'une sexualité enfin épanouie dans le BDSM...
Une vie à soi, unique et familière, tissée de contradictions, de violences et de libertés. Une forme réduite pour faire entendre des récits inspirants, des parcours de vie, des chemins d'émancipation au sein du patriarcat.
Pour prolonger l'écoute :
- Qui gardera les enfants ?
- « Quotidien politique : féminisme, écologie, subsistance », Geneviève Pruvost, Ed. La DécouverteBonne nouvelle, Un podcast à soi se décline en livre ! Du micro à la plume, Un livre à soi de Charlotte Bienaimé nous donne à lire ce qui fait les questions d’aujourd’hui : le sexisme ordinaire, la grossophobie, le rôle des pères, la transidentité, les luttes sociales, l’écoféminisme, le prix du sexe ou encore l’horloge biologique. Un livre ARTE Éditions / Stock, disponible en librairie.
Enregistrements
mars 22Prise de son, textes et voix
Charlotte BienaiméMontage, réalisation, mixage et musique originale
Samuel HirschSélection des textes, réseaux sociaux et accompagnement éditorial
Sarah BénichouIllustrations
Anna Wanda GoguseyProduction
ARTE Radioflex2.acast.com -
Le racisme a tué mon frère
Une vie à soi : NadiaLe 31 août 2024, Djamel Bendjaballah, un éducateur spécialisé de 43 ans, mourait près de Dunkerque, écrasé volontairement par Jérôme Décofour, l'ancien concubin de sa compagne. La police a cru à un crime passionnel et n'a pas retenu le caractère raciste du meurtre. Pourtant, Djamel avait déposé plusieurs plaintes pour injures racistes envoyées par le tueur. Celui-ci faisait partie d'une milice survivaliste d'extrême droite, la Brigade française patriote. Depuis, la sœur de Djamel, Nadia se bat pour que le meurtre soit requalifié en crime raciste et pour dénoncer l'invisibilisation de cette affaire. Elle est percussionniste, et la musique la fait tenir dans cette lutte contre les violences, souvent menées par des sœurs ou des mères.
Avec :
Nadia BenjaballahLiens :
Article de Médiapart "Derrière la mort de Djamel, tué par l’ex de sa compagne, la crainte d’un crime raciste"Article de Blast "Crime raciste à Dunkerque : Djamel, tué par un néonazi"
Sur la Brigade Française Patriote "Une mystérieuse milice d'extrême droite se prépare à la guerre"
La compagnie musicale de Nadia
Remerciements:
Merci à la grand-mère et à la mère de Djamel, à Fatima Seghir, de la maison des potes de Dunkerque, à Julien Brygo, à Nina Faure.Enregistrements
Janvier 2025Prise de son, montage, textes et voix
Charlotte BienaiméRéalisation et mixage
Annabelle BrouardAccompagnement éditorial
Sarah BénichouCommunity Manager
Marie WrobelIllustrations
Anna Wanda Goguseyflex2.acast.com -
Risky Business #816 -- Copilot Actions for Windows is extremely dicey
In this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- Salesforce partner Gainsight has customer data stolen
- Crowdstrike fires insider who gave hackers screenshots of internal systems
- Australian Parliament turns off wifi and bluetooth in fear of of visiting Chinese bigwigs
- Shai-Hulud npm/Github worm is back, and rm -rf’ier than ever
- SEC gives up on Solarwinds lawsuit
- Dog eats cryptographer’s key material
This week’s episode is sponsored by runZero. HD Moore pops in to talk about how they’re integrating runZero with Bloodhound-style graph databases. He also discusses uses for driving runZero’s tools with an AI, plus the complexities of shipping AI when the company has a variety of deployment models.
This episode is also available on Youtube.
Show notes
- Google says hackers stole data from 200 companies following Gainsight breach
- Gainsight Status
- Trust Status
- CrowdStrike fires 'suspicious insider' who passed information to hackers
- Salesforce cuts off access to third-party app after discovering ‘unusual activity’
- Атаки разящей панды: APT31 сегодня
- Office of Public Affairs | Seven Hackers Associated with Chinese Government Charged with Computer Intrusions
- Australian federal MPs warned to turn off phones when Chinese delegation visits Parliament House
- Sha1-Hulud: The Second Coming of the NPM Worm is Digging For Secrets
- FCC eliminates cybersecurity requirements for telecom companies
- Trade Associations Cybersecurity Practices Ex Parte
- SEC voluntarily dismisses SolarWinds lawsuit
- Record-breaking DDoS attack against Microsoft Azure mitigated
- The Cloudflare Outage May Be a Security Roadmap – Krebs on Security
- Critics scoff after Microsoft warns AI feature can infect machines and pilfer data
- vx-underground on X: "I've had a surprising amount of people ask me about Copilot"
- Researchers warn command injection flaw in Fortinet FortiWeb is under exploitation
- Two suspected Scattered Spider hackers plead not guilty over Transport for London cyberattack
- Russia arrests young cybersecurity entrepreneur on treason charges
- This campaign aims to tackle persistent security myths in favor of better advice
- Oops. Cryptographers cancel election results after losing decryption key.
- Uncovering network attack paths with runZeroHound
- Model Context Protocol
dts.podtrac.com -
Risky Biz Soap Box: It took a decade, but allowlisting is cool again
In this Soap Box edition of the Risky Business podcast Patrick Gray sits down with Airlock Digital co-founders Daniel Schell and David Cottingham to talk about the role AI models could play in managing enterprise allowlists.
They also talk about the durability of allowlisting as a control. After 12 years in business, the Airlock product hasn’t really changed all that much. That’s a good thing! It also means the Airlock team have been able to spend some time doing deep engineering instead of chasing the latest attacker TTPs and writing detection rules for them.
This episode is also available on Youtube.
Show notes
dts.podtrac.com -
Risky Business #828 -- The Coruna exploits are truly exquisite
On this week’s show, Patrick Gray, Adam Boileau and James WIlson discuss the week’s cybersecurity news. They cover:
- The Coruna exploits were L3 Harris, but it seems Triangulation… was not!
- Iran’s cyber HQ hit by Israeli (kinetic) strikes
- Trump’s cyber “strategy” is … well, all we’ve got is jokes cause there’s no serious content
- NSA and CyberCom finally get a leader after Lt Gen Joshua Rudd gets Senate nod
- DOGE (remember them?!) employee walked a social security database out on a USB stick
This episode is sponsored by open source cloud security scanner Prowler. Creator and CEO Toni de la Fuente talks to Pat about some of the enterprise features Prowler is growing, while remaining true to its open source roots.
This episode is also available on Youtube.
Show notes
- Inside Coruna: Reverse Engineering a Nation-State iOS Exploit Kit From JavaScript
- GitHub - matteyeux/coruna: deobfuscated JS and blobs
- US military contractor likely built iPhone hacking tools used by Russian spies in Ukraine
- APT36: A Nightmare of Vibeware
- State-linked actors targeted US networks in lead-up to Iran war
- Iranian cyber warfare HQ allegedly hit by Israel
- Last 2 names of 6 US soldiers who died in Kuwait attack identified by the Pentagon
- Signal, WhatsApp users face Russian phishing push, Dutch warn
- Samuel Bendett on X: "Russian military told it couldn't use Telegram messaging app"
- FBI investigating ‘suspicious’ cyber activities on critical surveillance network
- Risky Bulletin: New White House EO prioritizes fight against scams and cybercrime
- President Trump’s CYBER STRATEGY for America
- Fact Sheet: President Donald J. Trump Combats Cybercrime, Fraud, and Predatory Schemes Against American Citizens
- UK plans to shift fraud fight onto telecoms, tech companies
- Trump to hit Anthropic with executive order to remove "woke" AI Claude
- Anthropic launches code review tool to check flood of AI-generated code
- CrowdStrike reports record quarter amid investor concerns about AI impact
- Critical defect in Java security engine poses serious downstream security risks
- Gen. Joshua Rudd confirmed as NSA, Cyber Command head
- Plankey’s nomination as CISA director now in jeopardy
- DOGE employee stole Social Security data and put it on a thumb drive, report says
- Taming Agentic Browsers: Vulnerability in Chrome Allowed Extensions to Hijack New Gemini Panel
- Cel mai mare exportator român de carne, deținătorul brandului Cocorico, a intrat în restructurări, alături de Casa de Insolvență Transilvania
dts.podtrac.com -
Risky Business #805 -- On the Salesloft Drift breach and "OAuth soup"
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- The Salesloft breach and why OAuth soup is a problem
- The Salt Typhoon telco hackers turn out to be Chinese private sector, but state-directed
- Google says it will stand up a “disruption unit”
- Microsoft writes up a ransomware gang that’s all-in on the cloud future
- Aussie firm hot-mics its work-from-home employees’ laptops
- Youtube scam baiters help the feds take down a fraud ring
This episode is sponsored by Dropzone.AI. Founder and CEO Edward Wu joins the show to talk about how AI driven SOC tools can help smaller organisations claw their way above the “security poverty line”. A dedicated monitoring team, threat hunting and alert triage, in a company that only has a couple of part time infosec people? Yes please!
This episode is also available on Youtube.
Show notes
- The Ongoing Fallout from a Breach at AI Chatbot Maker Salesloft – Krebs on Security
- Salesloft: The Leading AI Revenue Orchestration Platform
- Palo Alto Networks, Zscaler customers impacted by supply chain attacks | Cybersecurity Dive
- The impact of the Salesloft Drift breach on Cloudflare and our customers
- China used three private companies to hack global telecoms, U.S. says
- CSA_COUNTERING_CHINA_STATE_ACTORS_COMPROMISE_OF_NETWORKS.PDF
- Google previews cyber ‘disruption unit’ as U.S. government, industry weigh going heavier on offense | CyberScoop
- Ransomware gang takedowns causing explosion of new, smaller groups | The Record from Recorded Future News
- Hundreds of Swedish municipalities impacted by suspected ransomware attack on IT supplier | The Record from Recorded Future News
- Storm-0501’s evolving techniques lead to cloud-based ransomware | Microsoft Security Blog
- The Era of AI-Generated Ransomware Has Arrived | WIRED
- Between Two Nerds: How threat actors are using AI to run wild - YouTube
- Affiliates Flock to ‘Soulless’ Scam Gambling Machine – Krebs on Security
- UK sought broad access to Apple customers’ data, court filing suggests
- ICE reactivates contract with spyware maker Paragon | TechCrunch
- WhatsApp fixes 'zero-click' bug used to hack Apple users with spyware | TechCrunch
- Safetrac turned staff laptops into covert recording devices to monitor WFH
- Risky Bulletin: YouTubers unmask and help dismantle giant Chinese scam ring - Risky Business Media
dts.podtrac.com -
Snake Oilers: LimaCharlie, Honeywell Cyber Insights, CobaltStrike and Outflank
In this edition of the Snake Oilers podcast, three sponsors come along to pitch their products:
- LimaCharlie: A public cloud for SecOps
- Honeywell Cyber Insights: An OT security/discovery solution
- Fortra’s CobaltStrike and Outflank: Security tooling for red teamers
This episode is also available on Youtube.
Show notes
dts.podtrac.com -
Risky Business #813 -- FFmpeg has a point
In this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- We love some good vulnerability reporting drama, this time FFmpeg’s got beef with Google
- OpenAI announces its Aardvark bug-gobbling system
- Two US ransomware responders get arrested for… ransomware
- Memento (nee HackingTeam) CEO says: Sì, those are totally our tools getting snapped in Russia
- Hackers help freight theft gangs steal shipments to resell
- A second Jabber Zeus mastermind gets his comeuppance 15 years on
This week’s episode is sponsored by Nucleus Security, who make a vulnerability information management system. Co-founder Scott Kuffer says that approaches for triaging vulnerabilities have started to fall apart, given there are just. So. Many. And they’re all important!
This episode is also available on Youtube.
Show notes
- vx-underground on X: "Yeah, so pretty much this entire drama thing is FFmpeg are a bunch of nerds…"
- FFmpeg on X: "@DavidEGrayson It's someone's hobby project of an obscure 1990s decoder…"
- Halvar Flake on X: "Given the extremely big role ffmpeg has played historically..."
- thaddeus e. grugq on X: "Current drama: Plucky security researcher Google takes on volunteer open source behemoth FFmpeg."
- Robert Graham on X: "Current status: There's a conflict between Google…"
- Introducing Aardvark: OpenAI’s agentic security researcher | OpenAI
- Bugcrowd acquires Mayhem Security to advance AI-powered security testing | CyberScoop
- Prosecutors allege incident response pros used ALPHV/BlackCat to commit string of ransomware attacks | CyberScoop
- Former Trenchant Exec Sold Stolen Code to Russian Buyer Even After Learning that Other Code He Sold Was Being "Utilized" by Different Broker in South Korea
- How an ex-L3Harris Trenchant boss stole and sold cyber exploits to Russia | TechCrunch
- Operation Zero — A Zero-Day Vulnerability Platform
- John Scott-Railton on X: "7/ There's a push to scale up America's offensive industry right now…"
- CEO of spyware maker Memento Labs confirms one of its government customers was caught using its malware | TechCrunch
- Exploiting Microsoft Teams: Impersonation and Spoofing Vulnerabilities Exposed Microsoft Teams Vulnerabilities Uncovered
- Cargo theft gets a boost from hackers using remote monitoring tools | The Record from Recorded Future News
- Remote access, real cargo: cybercriminals targeting trucking and logistics | Proofpoint US
- Alleged Conti ransomware gang affiliate appears in Tennessee court after Ireland extradition | The Record from Recorded Future News
- Three suspected developers of Meduza Stealer malware arrested in Russia | The Record from Recorded Future News
- Alleged Jabber Zeus Coder ‘MrICQ’ in U.S. Custody – Krebs on Security
- Windows Server Update Service exploitation ensnares at least 50 victims | Cybersecurity Dive
- Post by @paulschnack.bsky.social — Bluesky
dts.podtrac.com -
Risky Business #823 -- Humans impersonate clawdbots impersonating humans
Patrick Gray and Adam Boileau are joined by the newest guy on the Risky Business Media team, James WIlson. They discuss the week’s cybersecurity news, including:
- Notepad++ update supply chain attack has been attributed to China
- The AI agent future is even more stupid than expected; behold the OpenClaw/Clawdbot/Moltbook mess
- The Epstein files claim he had a personal hacker?
- Microsoft is finally getting ready to (think about starting to begin to) disable NTLM by default
- The usual bugs in the usual things! Ivanti, Fortinet, and Solarwinds. Again.
- Telco hides a free trip in its privacy policy, someone actually reads it and wins!
This weeks’s episode is sponsored by opensource IDP platform Authentik. CEO Fletcher Heisler talks to Pat about their new endpoint agent that can enforce device posture policies during login.
This episode is also available on Youtube.
Show notes
- The Chrysalis Backdoor: A Deep Dive into Lotus Blossom’s toolkit
- Notepad++ Hijacked by State-Sponsored Hackers | Notepad++
- Notepad++ v8.8.3 - Self-signed Certificate: Certified by Code, Not Corporations | Notepad++
- Hacking Moltbook: AI Social Network Reveals 1.5M API Keys | Wiz Blog
- lcamtuf on X: "Moltbook debate in a nutshell" / X
- Exposed Moltbook Database Let Anyone Take Control of Any AI Agent on the Site
- AndrewMohawk on X: "How exactly did an attacker send a message to your bot since you need to approve all the channels and set keys etc" / X
- Signal president warns AI agents are making encryption irrelevant
- Massive AI Chat App Leaked Millions of Users Private Conversations
- Runa Sandvik on X: New court record from the FBI details the state of the devices seized from Washington Post reporter Hannah Natanson
- EFTA01683874.pdf
- Disrupting the World's Largest Residential Proxy Network | Google Cloud Blog
- Nobel Committee says Peace Prize winner likely revealed early by digital spying | Reuters
- County pays $600,000 to pentesters it arrested for assessing courthouse security - Ars Technica
- Advancing Windows security: Disabling NTLM by default - Windows IT Pro Blog
- Critical flaws in Ivanti EPMM lead to fast-moving exploitation attempts | Cybersecurity Dive
- CISA orders federal agencies to patch exploited SolarWinds bug by Friday | The Record from Recorded Future News
- CISA, security researchers warn FortiCloud SSO flaw is under attack | Cybersecurity Dive
- Fintech firm Marquis blames hack at firewall provider SonicWall for its data breach | TechCrunch
- We Hid a Free Trip to Switzerland in Our Privacy Policy. Someone Found It in 2 Weeks. - Cape
- Between Two Nerds: The internal logic of Russian power grid attacks - YouTube
dts.podtrac.com -
Risky Business #807 -- Shai-Hulud npm worm wreaks old-school havoc
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- Shai-Hulud worm propagates via npm and steals credentials
- Jaguar Land Rover attack may put smaller suppliers out of business
- Leaked data emerges from the vendor behind the Great Firewall of China
- Vastaamo hacker walks free while appeal is underway
- Why is a senator so mad about Kerberos?
This week’s episode is sponsored by Knocknoc. Chief exec Adam Pointon joins to talk through the surprising number of customers that are using Knocknoc’s identity-to-firewall glue to protect internal services and networks.
This week’s episode is also available on Youtube.
Show notes
- Self-Replicating Worm Hits 180+ Software Packages – Krebs on Security
- Jaguar Land Rover: Some suppliers 'face bankruptcy' due to hack crisis
- Jaguar Land Rover production shutdown could last until November
- U.S. Investors, Trump Close In on TikTok Deal With China - WSJ
- U.S. Investors, Trump Close In on TikTok Deal With China - WSJ
- How China’s Propaganda and Surveillance Systems Really Operate | WIRED
- Mythical Beasts: Diving into the depths of the global spyware market - Atlantic Council
- Hacker convicted of extorting 20,000 psychotherapy victims walks free during appeal | The Record from Recorded Future News
- US national charged in Finnish psychotherapy center extortion | The Record from Recorded Future News
- BreachForums administrator given three-year prison stint after resentencing | The Record from Recorded Future News
- Microsoft, Cloudflare disrupt RaccoonO365 credential stealing tool run by Nigerian national | The Record from Recorded Future News
- Senator blasts Microsoft for making default Windows vulnerable to “Kerberoasting” - Ars Technica
- Exclusive: US warns hidden radios may be embedded in solar-powered highway infrastructure | Reuters
- Israel announces seizure of $1.5M from crypto wallets tied to Iran | TechCrunch
dts.podtrac.com -
Wide World of Cyber: A deep dive on the F5 hack
In this edition of the Wide World of Cyber podcast Patrick Gray talks to Chris Krebs and Alex Stamos about the F5 incident. They talk about what happened, whether it’s a big deal, and why private equity ownership of mid-tier cybersecurity companies is often a red flag.
Show notes
dts.podtrac.com -
Risky Biz Soap Box: Run your own open source IDP with Authentik
In this SoapBox edition of the show Patrick Gray chats to Fletcher Heisler, the CEO of open-source identity provider Authentik.
The whole idea of Authentik is you can take control of an essential IT and security function: identity. Because Authentik is open source it’s extremely flexible, and if you’re running it yourself, you get to decide where your IDP should sit in your architecture. You can run it on prem if you’re an emergency call centre or you’re operating an airgapped network, or you can spin it up in your cloud environment if you’re a typical enterprise.
Fletcher talks through the reasons Authentik users are decoupling themselves from the major SaaS Identity Providers, and the flexibility that comes from being able to assemble exactly what you need.
This episode is also available on Youtube.
Show notes
dts.podtrac.com -
Risky Business #822 -- France will ditch American tech over security risks
In this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news. They discuss:
- La France is tres sérieux about ditching US productivity software
- China’s Salt Typhoon was snooping on Downing Street
- Trump wields the mighty DISCOMBOBULATOR
- ESET says the Polish power grid wiper was Russia’s GRU Sandworm crew
- US cyber institutions CISA and NIST are struggling
- Voice phishing for MFA bypass is getting even more polished
This episode is sponsored by Sublime Security. Brian Baskin is one of the team behind Sublime’s 2026 Email Threat Research report. He joins to talk through what they see of attackers’ use of AI, as well as the other trends of the year.
This episode is also available on Youtube.
Show notes
- France to ditch US platforms Microsoft Teams, Zoom for ‘sovereign platform’ amid security concerns | Euronews
- Suite Numérique plan - Google Search
- China hacked Downing Street phones for years
- Cyberattack Targeting Poland’s Energy Grid Used a Wiper
- Trump says U.S. used secret 'discombobulator' on Venezuelan equipment during Maduro raid | PBS News
- Risky Bulletin: Cyberattack cripples cars across Russia - Risky Business Media
- Lawmakers probe CISA leader over staffing decisions | CyberScoop
- Trump’s acting cyber chief uploaded sensitive files into a public version of ChatGPT - POLITICO
- Acting CISA director failed a polygraph. Career staff are now under investigation. - POLITICO
- NIST is rethinking its role in analyzing software vulnerabilities | Cybersecurity Dive
- Federal agencies abruptly pull out of RSAC after organizer hires Easterly | Cybersecurity Dive
- Real-Time phishing kits target Okta, Microsoft, Google
- Phishing kits adapt to the script of callers
- On the Coming Industrialisation of Exploit Generation with LLMs – Sean Heelan's Blog
- GitHub - SeanHeelan/anamnesis-release: Automatic Exploit Generation with LLMs
- Overrun with AI slop, cURL scraps bug bounties to ensure "intact mental health" - Ars Technica
- Bypassing Windows Administrator Protection - Project Zero
- Task Failed Successfully - Microsoft’s “Immediate” Retirement of MDT - SpecterOps
- Kubernetes Remote Code Execution Via Nodes/Proxy GET Permission
- WhatsApp's Latest Privacy Protection: Strict Account Settings - WhatsApp Blog
- Microsoft gave FBI a set of BitLocker encryption keys to unlock suspects' laptops: Reports | TechCrunch
- He Leaked the Secrets of a Southeast Asian Scam Compound. Then He Had to Get Out Alive | WIRED
- Key findings from the 2026 Sublime Email Threat Research Report
dts.podtrac.com -
Risky Biz Soap Box: Why Mastercard is scaling its cybersecurity business
In this sponsored Soap Box edition of the Risky Business podcast, host Patrick Gray chats with Mastercard’s Executive Vice President and Head of Security Solutions, Johan Gerber, about how the card brand thinks about cybersecurity and why it’s aggressively investing in the space.
After listening to this interview you’ll understand why the credit card company spent $2.65b on threat intelligence vendor Recorded Future!
This episode is also available on Youtube.
Show notes
dts.podtrac.com -
Risky Business #785 -- Signal-gate is actually as bad as it looks
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news:
- Yes, the Trump admin really did just add a journo to their Yemen-attack-planning Signal group
- The Github actions hack is smaller than we thought, but was targeting crypto
- Remote code exec in Kubernetes, ouch
- Oracle denies its cloud got owned, but that sure does look like customer keymat
- Taiwanese hardware maker Clevo packs its private keys into bios update zip
- US Treasury un-sanctions Tornado Cash, party time in Pyongyang?
This week’s episode is sponsored by runZero. Long time hackerman HD Moore joins to talk about how network vulnerability scanning has atrophied, and what he’s doing to bring it back en vogue. Do you miss early 2000s Nessus? HD knows it, he’s got you fam.
This episode is also available on Youtube.
Show notes
- The Trump Administration Accidentally Texted Me Its War Plans - The Atlantic
- Using Starlink Wi-Fi in the White House Is a Slippery Slope for US Federal IT | WIRED
- Coinbase Initially Targeted in GitHub Actions Supply Chain Attack; 218 Repositories' CI/CD Secrets Exposed
- GitHub Actions Supply Chain Attack: A Targeted Attack on Coinbase Expanded to the Widespread tj-actions/changed-files Incident: Threat Assessment (Updated 3/21)
- Critical vulnerabilities put Kubernetes environments in jeopardy | Cybersecurity Dive
- Researchers back claim of Oracle Cloud breach despite company’s denials | Cybersecurity Dive
- The Biggest Supply Chain Hack Of 2025: 6M Records Exfiltrated from Oracle Cloud affecting over 140k Tenants | CloudSEK
- Capital One hacker Paige Thompson got too light a sentence, appeals court rules | CyberScoop
- US scraps sanctions on Tornado Cash, crypto ‘mixer’ accused of laundering North Korea money | Reuters
- Tornado Cash Delisting | U.S. Department of the Treasury
- Major web services go dark in Russia amid reported Cloudflare block | The Record from Recorded Future News
- Clevo Boot Guard Keys Leaked in Update Package
- Six additional countries identified as suspected Paragon spyware customers | CyberScoop
- The Citizen Lab’s director dissects spyware and the ‘proliferating’ market for it | The Record from Recorded Future News
- Malaysia PM says country rejected $10 million ransom demand after airport outages | The Record from Recorded Future News
- Hacker defaces NYU website, exposing admissions data on 1 million students | The Record from Recorded Future News
- Notre Dame uni students say outage creating enrolment, graduation, assignment mayhem - ABC News
- DNA of 15 Million People for Sale in 23andMe Bankruptcy
dts.podtrac.com -
Snake Oilers: Nebulock, Vali Cyber and Cape
In this edition of the Snake Oilers podcasts, three vendors pop in to pitch you all on their wares:
- Automated, AI-powered threat hunting with Nebulock
Damien Lewke from Nebulock joins the show to talk about how its agentic AI platform can surface attacker activity out of all those “low” and “informational” findings your detection team doesn’t have time to look at.
- Runtime security for hypervisors from Vali Cyber
Austin Gadient from Vali Cyber stops by to talk about ZeroLock, its hypervisor security product. It’s marketed as a counter-ransomware control but is just a generally useful security platform for virtualised environments.
- A secure mobile telco: Cape
The only thing American cell providers love more than providing patchy coverage is getting their customers’ data owned. Cape is here to change that. It’s a security and anonymity-focussed virtual mobile network operator (MVNO) that’s been spun up by a highly competent team. If we lived in the USA we would be customers, and a bunch of CISOs listening to this might want to consider Cape subscriptions for their workforce.
This episode is also available on Youtube
Show notes
dts.podtrac.com -
Risky Biz Soap Box: Graph the planet!
In this sponsored Soap Box edition of the Risky Business podcast, Patrick Gray chats with Jared Atkinson, CTO of SpecterOps, about BloodHound OpenGraph.
OpenGraph enumerates attack paths across platforms and services, not just your primary directories.
A compromised GitHub account to on-prem AD compromise attack path? It’s a thing, and OpenGraph will find it.
Cross-platform attack path enumeration! So good!
This episode is also available on Youtube.
Show notes
dts.podtrac.com -
Risky Business #793 -- Scattered Spider is hijacking MX records
In this week’s edition of Risky Business Dmitri Alperovitch and Adam Boileau join Patrick Gray to talk through the week’s news, including:
- EXCLUSIVE: A Scattered Spider-style crew is hijacking DNS MX entries and compromising enterprises within minutes
- The SVG format brings the all horrors of HTML+JS to image files, and attackers have noticed
- Brian Krebs eats a 6.3Tbps DDoS … ‘cause that’s how you demo your packet cannon
- Law enforcement takes out Lumma Stealer, Qakbot, Danabot and some dark web drug traffickers
- Iranian behind 2019 Baltimore ransomware mysteriously appears in North Carolina and pleads guilty
- CISA’s leadership is fleeing in droves, even though the US needs them more than ever.
This week’s episode is sponsored by Thinkst Canary. Long time friend of the show Haroon Meer joins and talks through where he feels the industry is at, having just returned home from the AI-fueled hype at this year’s RSA conference.
This episode is also available on Youtube.
Show notes
- China-linked ‘Silk Typhoon’ hackers accessed Commvault cloud environments, person familiar says - Nextgov/FCW
- Risky Bulletin: SVG use for phishing explodes in 2025 - Risky Business Media
- KrebsOnSecurity Hit With Near-Record 6.3 Tbps DDoS – Krebs on Security
- Midwestern telco Cellcom confirms cyber incident after days of service outages | The Record from Recorded Future News
- Microsoft leads international takedown of Lumma Stealer | Cybersecurity Dive
- Who said what? on X: "Message from the administrator of Lumma Stealer on the forums about the recent events🕊️👀 https://t.co/MOjCSMMErK" / X
- Ransomware hackers charged, infrastructure dismantled in international law enforcement operation | The Record from Recorded Future News
- Oops: DanaBot Malware Devs Infected Their Own PCs – Krebs on Security
- DOJ charges man allegedly behind Qakbot malware | The Record from Recorded Future News
- US, Europol arrest 270 dark web drug traffickers in Operation RapTor | The Record from Recorded Future News
- Iranian pleads guilty to launching Baltimore ransomware attack, faces 30 years behind bars | The Record from Recorded Future News
- Decentralized crypto platform Cetus hit with $223 million hack | The Record from Recorded Future News
- Nearly 70,000 impacted by Coinbase breach involving $20 million ransom demand | The Record from Recorded Future News
- USA: Crypto investor charged with kidnapping, torturing man in an NYC apartment
- Vietnam orders ban on Telegram messaging app over security concerns | The Record from Recorded Future News
- Exclusive: Hacker who breached communications app used by Trump aide stole data from across US government | Reuters
- CISA loses nearly all top officials as purge continues | Cybersecurity Dive
- White House dismisses scores of National Security Council staff - The Washington Post
dts.podtrac.com -
Risky Business #801 -- AI models can hack well now and it's weirding us out
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news. Google security engineering VP Heather Adkins drops by to talk about their AI bug hunter, and Risky Business producer Amberleigh Jack makes her main show debut.
This episode explores the rise of AI-powered bug hunting:
- Google’s Project Zero and Deepmind team up to find and report 20 bugs to open source projects
- The XBOW AI bug hunting platform sees success on HackerOne
- Is an AI James Kettle on the horizon?
There’s also plenty of regular cybersecurity news to discuss:
- On-prem Sharepoint’s codebase is maintained out of China… awkward!
- China frets about the US backdooring its NVIDIA chips, how you like ‘dem apples, China?
- SonicWall advises customers to turn off their VPNs
- Hardware controlling Dell laptop fingerprint and card readers has nasty driver bugs
- Russia uses its ISPs to in-the-middle embassy computers and backdoor ‘em.
- The Russian government pushes VK’s Max messenger for everything
This week’s show is sponsored by device management platform Devicie. Head of Solutions Sean Ollerton talks through the impending Windows 10 apocalypse, as Microsoft ends mainstream support. He says Windows 11 isn’t as scary as people make out, but if the update isn’t on your radar now, time is running out.
This episode is also available on Youtube.
Show notes
- Google says its AI-based bug hunter found 20 security vulnerabilities | TechCrunch
- Is XBOW’s success the beginning of the end of human-led bug hunting? Not yet. | CyberScoop
- James Kettle on X: "There I am being careful to balance hyping my talk without going too far and then this gets published 😂 maybe the countdown timer is just too ominous!
- Risky Bulletin: China with the accusations again - Risky Business Media
- 美情报机构频繁对我国防军工领域实施网络攻击窃密
- SharePoint Exploit: Microsoft Used China-Based Engineers to Maintain the Software — ProPublica
- China fears Nvidia chips could track, trace and shut down its AIs - Asia Times
- SonicWall urges customers to take VPN devices offline after ransomware incidents | The Record from Recorded Future News
- Gen 7 SonicWall Firewalls – SSLVPN Recent Threat Activity
- ReVault! When your SoC turns against you…
- Nearly 100,000 ChatGPT Conversations Were Searchable on Google
- Microsoft catches Russian hackers targeting foreign embassies - Ars Technica
- The Kremlin’s Most Devious Hacking Group Is Using Russian ISPs to Plant Spyware | WIRED
- Frozen in transit: Secret Blizzard’s AiTM campaign against diplomats | Microsoft Security Blog
- Russia blocks popular US-made internet speed test tool over national security concerns | The Record from Recorded Future News
dts.podtrac.com -
Risky Business #820 -- Asian fraud kingpin will face Chinese justice (pew pew!)
Risky Business returns for 2026! Patrick Gray and Adam Boileau talk through the week’s cybersecurity news, including:
- Santa brings hackers MongoDB memory leaks for Christmas
- Vercel pays out a million bucks to improve its React2Shell WAF defences
- 39C3 delivers; the pink Power Ranger deletes nazis, while a catgirl ruins GnuPG
- Cambodian scam compound kingpin gets extradited to China, and we don’t think it’ll go well for him
- Krebs picks apart the Kimwolf botnet and residential proxy networks
- So many healthcare data leaks that we have a roundup section
This week’s episode is sponsored by Airlock Digital. The founders of the application allow-listing vendor, David Cottingham and Daniel Schell, discuss Microsoft’s ClickOnce .NET app packaging, and how attackers have been abusing it to load code. Airlock hates it when you load code!
This episode is also available on Youtube.
Show notes
- US, Australia say ‘MongoBleed’ bug being exploited | The Record from Recorded Future News
- Merry Christmas Day! Have a MongoDB security incident. | by Kevin Beaumont | Dec, 2025 | DoublePulsar
- Inside Vercel’s sleep-deprived race to contain React2Shell | CyberScoop
- gpg.fail
- Hacktivist deletes white supremacist websites live onstage during hacker conference | TechCrunch
- Chinese attackers exploiting zero-day to target Cisco email security products | The Record from Recorded Future News
- Ni8mare - Unauthenticated Remote Code Execution in n8n (CVE-2026-21858) | Cyera Research Labs
- ServiceNow patches critical AI platform flaw that could allow user impersonation | CyberScoop
- Alleged cyber scam kingpin arrested, extradited to China | The Record from Recorded Future News
- FCC IoT labeling program loses lead company after China probe | Cybersecurity Dive
- Trump picks Lt. Gen. Joshua Rudd to lead NSA spy agency - The Washington Post
- NSA cyber directorate gets new acting leadership | The Record from Recorded Future News
- Dutch court sentences hacker who used port systems to smuggle cocaine to 7 years | The Record from Recorded Future News
- ECLI:NL:GHAMS:2026:22, Amsterdam Court of Appeal, 23-003218-22
- The Kimwolf Botnet is Stalking Your Local Network – Krebs on Security
- Who Benefited from the Aisuru and Kimwolf Botnets? – Krebs on Security
- Coupang recovers smashed laptop that alleged data leaker threw into river | The Record from Recorded Future News
- Ransomware responders plead guilty to using ALPHV in attacks on US organizations | The Record from Recorded Future News
- Nearly 480,000 impacted by Covenant Health data breach | The Record from Recorded Future News
- Illinois health department exposed over 700,000 residents' personal data for years | TechCrunch
- Tech provider for NHS England confirms data breach | TechCrunch
- Hacker claiming to be behind ManageMyHealth breach: ‘I do it for the money and I’m in negotiations to get it’ - NZ Herald
dts.podtrac.com -
Risky Business #787 -- Trump fires NSA director, CISA cuts inbound
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news:
- Oracle quietly cops to being hacked, but immediately pivots into pretending it didn’t matter
- NSA and CyberCom leaders fired for not being MAGA enough
- US Treasury had some dusty corners it hadn’t found China in yet, looked, found China in them
- …which is a great time to discuss slashing CISA’s staffing
- Ransomware crews and bullet proof hosting providers are getting rekt, and we love it
- And Microsoft patches yet another logging 0-day being used in the wild.
This episode is sponsored by Yubico, makers of Yubikey hardware authentication tokens. Yubico’s Vice President of Solutions Architecture and Alliances Derek Hanson joins to discuss how the consumer-centric passkey ecosystem has become a real challenge for enterprises. One that Yubico is actually ideally positioned to solve.
This episode is also available on Youtube.
Show notes
- Oracle privately confirms Cloud breach to customers
- Oracle have finally issued a written notification to customers about their cybersecurity incident.
- Head of NSA and US Cyber Command reportedly fired | Cybersecurity Dive
- Trump fires numerous National Security Council staff - The Washington Post
- Trump administration under scrutiny as it puts major round of CISA cuts on the table | Cybersecurity Dive
- Hackers Spied on US Bank Regulators’ Emails for Over a Year - Bloomberg
- This is how Jeffrey Goldberg got added to the Signal chat
- Cybercriminals are trying to loot Australian pension accounts in new campaign | The Record from Recorded Future News
- $500,000 stolen in Australian super fund data breach | Superannuation | The Guardian
- Australian regulator pulls licenses of 95 companies in effort to crack down on investment scams | The Record from Recorded Future News
- Everest ransomware group’s darknet site offline following defacement | The Record from Recorded Future News
- On March 28, 2025, a threat actor leaked internal data from Medialand, a major bulletproof hosting (BPH) provider long linked to Yalishanda (LARVA-34).
- There's a ransomware group named DragonForce going around hacking its rivals. After Mamona and BlackLock, the group has now hacked RansomHub
- The DragonForce ransomware group hacked two rivals this month
- CISA, experts warn of Crush file transfer attacks as ransomware gang makes threats | The Record from Recorded Future News
- Kill Security Campaign Targets CrushFTP Servers
- National Vulnerability Database | NIST
- Microsoft patches zero-day actively exploited in string of ransomware attacks | CyberScoop
- Exploitation of CLFS zero-day leads to ransomware activity | Microsoft Security Blog
- Is The Sofistication In The Room With Us? - X-Forwarded-For and Ivanti Connect Secure (CVE-2025-22457)
dts.podtrac.com -
Risky Business #783 -- Evil webcam ransomwares entire Windows network
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news with special guest Rob Joyce, a Former Special Assistant to the US President and Director of Cybersecurity for NSA.
They talk through:
- A realistic bluetooth-proximity phishing attack against Passkeys
- A very patient ransomware actor encrypts an entire enterprise with a puny linux webcam processor
- The ESP32 backdoor that is neither a door nor at the back
- The X DDoS that Elon said was Ukraine is claimed by pro-Palestinian hacktivists
- Years later, LastPass hackers are still emptying crypto-wallets
- …and it turns out North Korea nailed {Safe}Wallet with a malicious docker image. Nice!
Rob Joyce recently testified to the US House Select Committee on the Chinese Communist Party, and he explains why DOGE kicking probationary employees to the curb is “devastating” for the national security staff pipeline.
This week’s episode is sponsored by SpecterOps, makers of the BloodHound identity attack path mapping tool. Chief Product Officer Justin Kohler and Principal Security Researcher Lee Chagolla-Christensen discuss their pragmatic approach to disabling NTLM authentication in Active Directory using BloodHound’s insight.
This episode is also available on Youtube.
Show notes
- CVE-2024-9956 - PassKey Account Takeover in All Mobile Browsers | Tobia Righi - Security Researcher
- Feds Link $150M Cyberheist to 2022 LastPass Hacks – Krebs on Security
- Camera off: Akira deploys ransomware via webcam
- Tarlogic detects a hidden feature in the mass-market ESP32 chip that could infect millions of IoT devices
- Alleged Co-Founder of Garantex Arrested in India – Krebs on Security
- 37K+ VMware ESXi instances vulnerable to critical zero-day | Cybersecurity Dive
- Apple patches 0-day exploited in “extremely sophisticated attack” - Ars Technica
- What Really Happened With the DDoS Attacks That Took Down X | WIRED
- Eleven11bot estimates revised downward as researchers point to Mirai variant | Cybersecurity Dive
- Previously unidentified botnet infects unpatched TP-Link Archer home routers | The Record from Recorded Future News
- Safe.eth on X: "Investigation Updates and Community Call to Action" / X
- How to verify Safe{Wallet} transactions on a hardware wallet | Safe{Wallet} Help Center and Support.
- US charges Chinese nationals in cyberattacks on Treasury, dissidents and more | The Record from Recorded Future News
- Former top NSA cyber official: Probationary firings ‘devastating’ to cyber, national security | CyberScoop
- U.S. pauses intelligence sharing with Ukraine used to target Russian forces - The Washington Post
dts.podtrac.com -
Soap Box: Knocknoc glues your SSO to your firewalls for Just-in-Time network access
In this Soap Box edition of Risky Business host Patrick Gray talks to Knocknoc CEO Adam Pointon about how to easily rein in attack surface by glueing your single sign-on service to your network controls.
Do your Palo Alto and Fortinet devices really need to be discoverable by ransomware crews? Does your file transfer appliance need to be open to the whole world? What about your SSH and RDP? Your Citrix? Your (gasp) Exchange Online servers??
You can do a lot with IP allowlisting and simple Identity Aware Proxies (IAPs) to minimise your exposure.
Knocknoc is a bit of a “Risky Business special”, too. Pat helped Knocknoc to raise a seed round through Decibel Partners where he’s a founder advisor. He also serves on Knocknoc’s board of directors.
This episode is also available on Youtube.
Show notes
dts.podtrac.com -
Soap Box: Red teaming AI systems with SpecterOps
In this sponsored Soap Box edition of the show, Patrick Gray and James Wilson talk about red teaming AI systems with Russel Van Tuyl, Vice President of Services at elite penetration testing firm SpecterOps.
SpecterOps is the company behind attack path enumeration tool Bloodhound and Bloodhound Enterprise, but they’re also a pentest and red teaming shop with world class expertise in popping shells on all sorts of interesting systems in all sorts of interesting places.
This episode is also available on Youtube.
Show notes
dts.podtrac.com -
Risky Business #830 -- LiteLLM and security scanner supply chains compromised
On this week’s show, Patrick Gray, Adam Boileau and James WIlson discuss the week’s cybersecurity news. They talk through:
- TeamPCP’s supply chain attack on Github, and they threw in an anti-Iran wiper, because why not?!
- Anthropic hooks up its models to just… use your whole computer
- After Stryker’s Very Bad Day, CISA says maybe add some more controls around your Intune?
- Another iOS exploit kit shows up in the cyber bargain-bin
- The FTC decides to ban… all new home routers?! U wot m8?!
- Supermicro founder was personally sanction-busting Nvidia GPUs into China?!
This week’s episode is sponsored by enterprise browser maker, Island. Chief Customer Officer Bradon Rogers joins Pat to explain how its customers are using Island to control the use of personal AI services in regulated industries.
This episode is also available on Youtube.
Show notes
- ‘CanisterWorm’ Springs Wiper Attack Targeting Iran
- TeamPCP deploys CanisterWorm on NPM following Trivy compromise
- Andrej Karpathy on X: "Software horror: litellm PyPI supply chain" attack
- Checkmarx KICS GitHub Action Compromised: Malware Injected in All Git Tags
- Felix Rieseberg on X: "Today, we’re releasing a feature that allows Claude to control your computer"
- A Top Google Search Result for Claude Plugins Was Planted by Hackers
- Lockheed Martin targeted in alleged breach by pro-Iran hacktivist
- CISA urges companies to secure Microsoft Intune systems after hackers mass-wipe Stryker devices
- FBI seems to seize website tied to Iranian cyberattack on Stryker
- Stryker confirms cyberattack is contained and restoration underway
- Hundreds of Millions of iPhones Can Be Hacked With a New Tool Found in the Wild
- Someone has publicly leaked an exploit kit that can hack millions of iPhones
- Russia-linked hackers use advanced iPhone exploit to target Ukrainians
- Apple rolls out first 'background security' update for iPhones, iPads, and Macs to fix Safari bug
- Post by @wartranslated.bsky.social — Bluesky
- Signal’s Creator Is Helping Encrypt Meta AI
- Hacker says they compromised millions of confidential police tips held by US company
- Millions of 'anonymous' crime tips exposed in massive Crime Stoppers hack
- Feds Disrupt IoT Botnets Behind Huge DDoS Attacks
- FCC bans import of consumer-grade routers amid national security concerns
- White House pours cold water on cyber ‘letters of marque’ speculation
- Google launches threat disruption unit, stops short of calling it ‘offensive'
- Supermicro’s cofounder was just arrested for allegedly smuggling $2.5 billion in GPUs to China
- Cyberattack on vehicle breathalyzer company leaves drivers stranded across the US
- Man pleads guilty to $8 million AI-generated music scheme
- Two Israelis AI generated "intelligence" and sold it to Iran
dts.podtrac.com -
Risky Business #781 -- How Bybit oopsied $1.4bn
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news:
- North Korea pulls off a 1.5 billion dollar crypto heist
- Apple pulls Advanced Data Protection from the UK
- Black Basta ransomware gang’s internal chats leak
- Russians snoop on Signal with QR codes
- And Myanmar ships thousands of freed scam compound workers to Thailand
Regular guest Lina Lau joins to discuss her work reading Chinese incident response reports on WeChat, and how that has people thinking that … she outed the NSA?
This week’s episode is sponsored by Airlock Digital, and allow-listing tragics Daniel Schell and David Cottingham are along with an amusing tale of using Windows’ own allow-listing software to block EDR from loading.
This episode is also available on Youtube.
Show notes
- Hackers drained $1.4 billion of cryptocurrency from Bybit exchange, CEO confirms | The Record from Recorded Future News
- CertiK - Bybit Incident Technical Analysis
- Hackers use ‘sophisticated’ macOS malware to steal cryptocurrency, Microsoft says | The Record from Recorded Future News
- EU sanctions North Korean tied to Lazarus group over involvement in Ukraine war | The Record from Recorded Future News
- Sanctions: Iranians Flock to Crypto; Int'l Actions Target Russia - Chainalysis
- Apple turns off iCloud encryption feature in UK following reported government legal order | The Record from Recorded Future News
- Swedish authorities seek backdoor to encrypted messaging apps | The Record from Recorded Future News
- Leaked chat logs expose inner workings of secretive ransomware group - Ars Technica
- Russian state hackers spy on Ukrainian military through Signal app | The Record from Recorded Future News
- Meta Sues Alleged Violent Extortionist For Holding Instagram Accounts Hostage
- Weathering the storm: In the midst of a Typhoon
- Thailand to take in 7,000 rescued from illegal cyber scam hubs in Myanmar | The Record from Recorded Future News
- Genea confirms cyber breach after ‘unauthorised third party’ accesses data | news.com.au — Australia’s leading news site
- Managed healthcare defense contractor to pay $11 million over alleged cyber failings | The Record from Recorded Future News
- Botnet looks for quiet ways to try stolen logins in Microsoft 365 environments | The Record from Recorded Future News
- Director-General's Annual Threat Assessment 2025 | ASIO
- An inside look at NSA (Equation Group) TTPs from China’s lense
dts.podtrac.com -
Risky Business #789 -- Apple's AirPlay vulns are surprisingly awful
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news:
- British retail stalwart Marks & Spencer gets cybered
- South Korean telco sets out to replace all its subscriber SIMs after (we assume) it lost the keymat
- It’s a good exploit week! Bugs in Apple Airplay, SAP webservers, Erlang SSH and CommVault backups
- Juice jacking! No, really! Some researchers actually did it (so still not in the wild, then)
- Anti-DOGE whistleblower sure sounds like he has a point
This week’s episode is sponsored by Knocknoc, who let you glue your firewalls to your single sign on. Knocknoc’s CEO Adam Pointon talks about the joy that having end-to-end IPv6 would bring for zero-trust access control. He also touches on people using Knocknoc inside their network to isolate critical systems.
Editors Note : Pat also gives Adam (Boileau) stick in the sponsor interview about the Risky Biz webserver not having IPv6 enabled, which fact-checking during the edit says is FAKE NEWS. Just uh, don’t look at how fresh that AAAA record in the DNS is, friends 😉
This episode is also available on Youtube.
Show notes
- British retailer M&S confirms being hit by ‘cyber incident’ amid store delays | The Record from Recorded Future News
- M&S cyber-attack linked to hacking group Scattered Spider | Marks & Spencer | The Guardian
- Bina Puri shares, Warrant B close sharply lower day after hacking
- Bina Puri, Pos Malaysia tumble following hacking incident | FMT
- Japan warns of hundreds of millions of dollars in unauthorized trades from hacked accounts | The Record from Recorded Future News
- US conducts cyberattacks against major Chinese commercial encryption provider: report - Global Times
- Iran says major cyberattack on infrastructure repelled | Iran International
- Spain rules out cyber attack - but what could have caused power cut?
- South Korea's SK Telecom begins SIM card replacement after data breach
- AirBorne: Wormable Zero-Click RCE in Apple AirPlay Puts Billions of Devices at Risk | Oligo Security | Oligo Security
- iOS and Android juice jacking defenses have been trivial to bypass for years - Ars Technica
- How Android 16's new security mode will stop USB-based attacks - Android Authority
- Researchers warn of critical flaw found in Erlang OTP SSH | Cybersecurity Dive
- Critical vulnerability in SAP NetWeaver under threat of active exploitation | Cybersecurity Dive
- CVE-2025-31324: Critical SAP Flaw Explained | Strobes
- Fire In The Hole, We’re Breaching The Vault - Commvault Remote Code Execution (CVE-2025-34028)
- Risky Bulletin: NFC card malware keeps evolving in Russia, a bad omen for the future - Risky Business Media
- Hegseth had unsecured internet line in Pentagon for Signal, sources say | AP News
- Whistleblower: DOGE Siphoned NLRB Case Data – Krebs on Security
- 2025_0414_Berulis-Disclosure-with-Exhibits.s.pdf
- CISA gets a deputy director as it braces for major layoffs | Cybersecurity Dive
- Two top cyber officials resign from CISA | The Record from Recorded Future News
- Ex-CISA chief Chris Krebs leaving SentinelOne following Trump pressure | Reuters
- Former cyber official targeted by Trump speaks out after cuts to digital defense
- Top Tier Target | What It Takes to Defend a Cybersecurity Company from Today's Adversaries | SentinelOne
- ZachXBT on X: "Nine hours ago a suspicious transfer was made from a potential victim for 3520 BTC ($330.7M)"
dts.podtrac.com -
Risky Business #821 -- Wiz researchers could have owned every AWS customer
In this week’s show, Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, joined by a special guest. BBC World Cyber Correspondent Joe Tidy is a long time listener and he pops in for a ride-along in the news segment plus a chat about his new book.
This week news includes:
- Did the US cyber Venezuela’s power grid, or do they just want us to think they coulda?
- US govt might boycott the RSAC Conference ‘cause Jen Easterly being CEO makes them mad
- MS Patch Tuesday fixes CVSS5.5 bug and … stops you shutting down
- Wiz pulls off cloud stunt hack that ends with control of everyone’s AWS console
- Millions of Bluetooth devices that use Google’s Fast Pairing will pair with anyone, any time
- GNU inet-tools’ telnetd parties like it’s 2007, and brings -f root unauthed remote login back
Thinkst is this week’s sponsor, and long time friend of the show Haroon Meer joins. As always they’re polishing their Canary tokens - adding breadcrumbs to lead you to them - but they’re also a bunch of giant nerds who now run South Africa’s Computer Olympiad.
This episode is also available on Youtube.
Show notes
- Cyberattack in Venezuela Demonstrated Precision of U.S. Capabilities - The New York Times
- Why I’m withholding certainty that “precise” US cyber-op disrupted Venezuelan electricity - Ars Technica
- Layered Ambiguity: US Cyber Capabilities in the Raid to Extract Maduro from Venezuela | Royal United Services Institute
- Former CISA Director Jen Easterly Will Lead RSAC Conference | WIRED
- Trump officials consider skipping premier cyber conference after Biden-era cyber leader named CEO - Nextgov/FCW
- Federal agencies ordered to patch Microsoft Desktop Windows Manager bug | The Record from Recorded Future News
- Windows 11 shutdown bug forces Microsoft into damage control • The Register
- CodeBreach: Supply Chain Vuln & AWS CodeBuild Misconfig | Wiz Blog
- Critical flaw in AWS Console risked compromise of build environment | Cybersecurity Dive
- Never-before-seen Linux malware is “far more advanced than typical” - Ars Technica
- VoidLink: Evidence That the Era of Advanced AI-Generated Malware Has Begun - Check Point Research
- Hundreds of Millions of Audio Devices Need a Patch to Prevent Wireless Hacking and Tracking | WIRED
- Critical flaw in Fortinet FortiSIEM targeted in exploitation threat | Cybersecurity Dive
- CVE-2025-64155: 3 Years of Remotely Rooting the FortiSIEM
- A single click mounted a covert, multistage attack against Copilot - Ars Technica
- Police raid homes of alleged Black Basta hackers, hunt suspected Russian ringleader | The Record from Recorded Future News
- Jordanian initial access broker pleads guilty to helping target 50 companies | The Record from Recorded Future News
- Supreme Court hacker posted stolen government data on Instagram | TechCrunch
- oss-sec: GNU InetUtils Security Advisory: remote authentication by-pass in telnetd
- How crypto criminals stole $700 million from people - often using age-old tricks
- Ctrl + Alt + Chaos: How Teenage Hackers Hijack the Internet
dts.podtrac.com -
Risky Business #826 -- A week of AI mishaps and skulduggery
On this week’s show, Patrick Gray, Adam Boileau and James WIlson discuss the week’s cybersecurity news. They cover:
- Low skill actors compromise 600 Fortinets with AI-generated playbooks
- Anthropic calls out Chinese AI firms over model distillation
- Meta’s director of AI safety tells her ClawdBot not to delete her mail… so of course it does
- Peter Williams cops 7 years in jail for selling L3 Harris Trenchant’s exploits to Russia
- Ivanti got hacked in 2021 via… bugs in Ivanti
This episode is sponsored by line-rate network capture system Corelight. CEO Brian Dye joins to discuss what AI can do for defenders, and what it can’t.
This episode is also available on Youtube.
Show notes
- AI-augmented threat actor accesses FortiGate devices at scale
- "this reads to me like: they ran existing tools.... but with a cool dashboard :D"
- Anthropic accuses Chinese labs of trying to illicitly take Claude’s capabilities | CyberScoop
- Detecting and preventing distillation attacks
- Hegseth warns Anthropic to let the military use the company’s AI tech as it sees fit, AP sources say
- Anthropic Rolls Out Embedded Security Scanning for Claude
- AWS's AI Coding Bot Kiro Caused a 13-Hour Outage
- Running OpenClaw safely: identity, isolation, and runtime risk
- Former Adobe, Cisco and Salesforce CISO talks AI pentesting
- History Repeats: Security in the AI Agent Era
- Meta Director of AI Safety Allows AI Agent to Accidentally Delete Her Inbox
- Microsoft says Office bug exposed customers' confidential emails to Copilot AI | TechCrunch
- The (tangential) fix: Microsoft adds Copilot data controls to all storage locations
- Ex-L3Harris executive sentenced to 87 months in prison for selling zero-day exploits to Russian broker
- Treasury Sanctions Exploit Broker Network for Theft and Sale of U.S. Government Cyber Tools
- Risky Bulletin: Russia starts criminal probe of Telegram founder Pavel Durov
- Ukraine pushes tighter Telegram regulation, citing Russian recruitment of locals
- The watchers: how openai, the US government, and persona built an identity surveillance machine that files reports on you to the feds
- Persona emails customers saying they don’t work with ICE or DHS amid ‘surveillance’ claims
- Inside the Fix: Analysis of In-the-Wild Exploit of CVE-2026-21513
- Ivanti hacked in 2021 via its own product
- Fed agencies ordered to patch Dell bug by Saturday after exploitation warning | The Record from Recorded Future News
- From BRICKSTORM to GRIMBOLT: UNC6201 Exploiting a Dell RecoverPoint for Virtual Machines Zero-Day
dts.podtrac.com -
Risky Business #786 -- Oracle is lying
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news:
- Yes, Oracle Health and Oracle Cloud did get hacked
- The fallout from Signalgate continues
- North Korean IT workers pivot to Europe
- Honeypot data suggests a storm is brewing for Palo Alto VPNs
- Canadian Anon gets arrested for hacking Texas GOP
This week’s episode is sponsored by Trail of Bits. Tjaden Hess, a Principal Security Engineer at Trail of Bits who specialises in cryptography, joins the show this week to talk about what a responsible crypto-currency exchange cold wallet setup looks like, and … contrasts that with Bybit.
This episode is also available on Youtube.
Show notes
- Oracle Health breach compromises patient data at US hospitals
- FBI probes Oracle hack tied to healthcare extortion: Report - Becker's Hospital Review | Healthcare News & Analysis
- Oracle Still Denies Breach as Researchers Persist
- Hacker linked to Oracle Cloud intrusion threatens to sell stolen data | Cybersecurity Dive
- Publius on X: "🚨 SIGNAL SCANDAL: Katherine Maher, the leftist NPR CEO, is currently the Chair of the Board of Signal! WHAT ARE THE ODDS? https://t.co/jWNTeAt3Jz" / X
- Mike Waltz Is Losing Support Inside the White House - WSJ
- Waltz and staff used Gmail for government communications, officials say - The Washington Post
- Pete Hegseth, Mike Waltz, Tulsi Gabbard: Private Data and Passwords of Senior U.S. Security Officials Found Online - DER SPIEGEL
- Even More Venmo Accounts Tied to Trump Officials in Signal Group Chat Left Data Public | WIRED
- You Need to Use Signal's Nickname Feature
- SignalGate Is Driving the Most US Downloads of Signal Ever | WIRED
- Wickr - Wikipedia
- When Getting Phished Puts You in Mortal Danger – Krebs on Security
- DPRK IT Workers Expanding in Scope and Scale | Google Cloud Blog
- How the FBI Tracked, and Froze, Millions Sent to Criminals in Massive Caesars Casino Hack
- Defense contractor to pay $4.6 million over third-party provider’s security weakness | The Record from Recorded Future News
- Surge in Palo Alto Networks Scanner Activity Indicates Possible Upcoming Threats
- CISA warns new malware targeting Ivanti zero-day vulnerability | Cybersecurity Dive
- Canadian hacker arrested for allegedly stealing data from Texas Republican Party | The Record from Recorded Future News
- British intel intern pleads guilty to smuggling top secret data out of protected facility | The Record from Recorded Future News
dts.podtrac.com -
Wide World of Cyber: DeepSeek lobs an AI hand grenade
In this episode of the Wide World of Cyber podcast Risky Business host Patrick Gray chats with SentinelOne’s Chris Krebs and Alex Stamos about AI, DeepSeek, and regulation.
From its bad transport security to its Chinese ownership and the economic implications of China “entering the chat”, everyone’s freaking out over this new model. But should they be?
Pat, Alex and Chris dissect the model’s significance, the politics of it all and how AI regulation in Europe, the US and China will shape the future of LLMs.
This episode is also available on Youtube.
Show notes
dts.podtrac.com -
Risky Business #778 -- Musk's child soldiers seize control of FedGov IT systems
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- DeepSeek leaves an unauthed database on the internet
- Russia hacked UK prime minister’s personal mail
- Australia sanctions a Telegram group… which is more sensible than it sounds
- Medical device backdoor turns out to be just poorly thought out upgrade feature
- Google abuses weak hashing to patch AMD CPU microcode
- And much, much more.
This week’s episode is sponsored by email security boffins Sublime. Their co-founder and CEO Josh Kamdjou joins to talk about how attackers’ abuse of legitimate services like Docusign is a challenge for email security vendors.
This episode is also available on Youtube.
Show notes
- Exclusive: Musk aides lock workers out of OPM computer systems | Reuters
- Wiz Research Uncovers Exposed DeepSeek Database Leaking Sensitive Information, Including Chat History | Wiz Blog
- Криптостилер SparkCat в магазинах Google Play и App Store | Securelist
- Russian hackers suspected of compromising British PM’s personal email account | The Record from Recorded Future News
- PowerSchool hack: missed basic security step resulted in data breach
- Australia sanctions ‘Terrorgram’ white supremacist online group | The Record from Recorded Future News
- ‘Paid actors’ could be behind some antisemitic attacks, Albanese says | Australian security and counter-terrorism | The Guardian
- Interview with James Glenday, ABC News Breakfast | Australian Minister for Foreign Affairs
- WhatsApp says spyware company Paragon Solutions targeted journalists
- Spyware maker Paragon confirms US government is a customer | TechCrunch
- Former Polish justice minister arrested in sprawling spyware probe | The Record from Recorded Future News
- Sweden releases suspected ship, says cable break ‘clearly’ not sabotage | The Record from Recorded Future News
- Backdoor found in two healthcare patient monitors, linked to IP in China
- Attackers exploit zero-day vulnerability in Zyxel CPE devices | Cybersecurity Dive
- AMD: Microcode Signature Verification Vulnerability · Advisory · google/security-research · GitHub
- 22-year-old math wiz indicted for alleged DeFI hack that stole $65M - Ars Technica
- A method to assess 'forgivable' vs 'unforgivable'... - NCSC.GOV.UK
- Living Off the Land: Credential Phishing via Docusign abuse
- Living Off the Land: Callback Phishing via Docusign comment
- B2B freight-forwarding scams on the rise to evade financial fraud crackdowns
- Callback phishing via invoice abuse and distribution list relays
- Enhanced message groups: Improving efficiency in email incident response
dts.podtrac.com -
Risky Business #812 -- Alleged Trenchant exploit mole is ex-ASD
In this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- L3Harris Trenchant boss accused of selling exploits to Russia once worked at the Australian Signals Directorate
- Microsoft WSUS bug being exploited in the wild
- Dan Kaminsky DNS cache poisoning comes back because of a bad PRNG
- SpaceX finally starts disabling Starlink terminals used by scammers
- Garbage HP update deletes certificates that authed Windows systems to Entra
This week’s episode is sponsored by automation company Tines. Field CISO Matt Muller joins to discuss how Tines has embraced LLMs and the agentic-AI future into their workflow automation.
This episode is also available on Youtube.
Show notes
- US accuses former L3Harris cyber boss of stealing and selling secrets to Russian buyer | TechCrunch
- Attackers bypass patch in deprecated Windows Server update tool | CyberScoop
- CVE-2025-59287 WSUS Unauthenticated RCE | HawkTrace
- CVE-2025-59287 WSUS Remote Code Execution | HawkTrace
- Catching Credential Guard Off Guard - SpecterOps
- Cache poisoning vulnerabilities found in 2 DNS resolving apps - Ars Technica
- Uncovering Qilin attack methods exposed through multiple cases
- Safety on X: "By November 10, we’re asking all accounts that use a security key as their two factor authentication (2FA) method to re-enroll their key to continue accessing X. You can re-enroll your existing security key, or enroll a new one. A reminder: if you enroll a new security key, any" / X
- SpaceX disables more than 2,000 Starlink devices used in Myanmar scam compounds | The Record from Recorded Future News
- SpaceX: Update Your Inactive Starlink Dishes Now or They'll Be Bricked
- How we linked ForumTroll APT to Dante spyware by Memento Labs | Securelist
- Former Polish official indicted over spyware purchase | The Record from Recorded Future News
- HP OneAgent Update Broke Entra Trust on HP AI Devices
- Windows' Built-in OpenSSH for Offensive Security
- How Hacked Card Shufflers Allegedly Enabled a Mob-Fueled Poker Scam That Rocked the NBA | WIRED
dts.podtrac.com -
Risky Business #819 -- Venezuela (credibly?!) blames USA for wiper attack
In the final show of 2025, Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- React2Shell attacks continue, surprising no one
- The unholy combination of OAuth consent phishing, social engineering and Azure CLI
- Venezuela’s state oil firm gets ransomware’d, blames US… but what if it really is a US cyber op?!
- Russian junk-hacktivist gets indicted for cybering critical… err… a car wash and a fountain
- Microsoft finally turns RC4 off by default in Active Directory Kerberos
- Traefik’s TLS verify=on … turns it off, whoopsie 🤡
This week’s episode is sponsored by Sublime Security, makers of an email filtering solution that’s up for dealing with modern problems. Founder and CEO Josh Kamdjou joins to talk about calendar invite phishing, and the extra steps they’ve had to take to reach into people’s calendars and fix the mess.
The Risky Business weekly show is taking holiday break, and will return on 14 January for its twentieth year! Good luck out there, internet friends.
This episode is also available on Youtube.
Show notes
- React2Shell attacks expand widely across multiple sectors | Cybersecurity Dive
- React issues new patches after security researchers flag additional flaws | Cybersecurity Dive
- ConsentFix: Browser-native ClickFix hijacks OAuth grants
- Hacking Endpoint to Identity (Microsoft 365): "ConsentFix" - YouTube
- Announced pick for No. 2 at NSA won’t get the job as another candidate surfaces | The Record from Recorded Future News
- Laura Loomer on X: "EXCLUSIVE: 🚨 White House Official Confirms Ongoing Search for NSA Deputy Director As Tim Kosiba's Deep State And Anti-Trump Ties Raise Red Flags 🚨"
- Senior official at Indo-Pacific Command is set to be Trump’s pick to lead Cyber Command, NSA | The Record from Recorded Future News
- Trump Administration Turning to Private Firms in Cyber Offensive - Bloomberg
- PdV says cyber attacks contained | Latest Market News
- Venezuela state oil company blames cyberattack on US after tanker seizure | The Record from Recorded Future News
- Office of Public Affairs | Justice Department Announces Actions to Combat Two Russian State-Sponsored Cyber Criminal Hacking Groups | United States Department of Justice
- DOJ, CISA warn of Russia-linked attacks targeting meat processing plants, nuclear regulatory entities and other critical infrastructure | The Record from Recorded Future News
- vx-underground on X: "The United States government has indicted a state-sponsored Threat Actor named Victoria Eduardovna Dubranova"
- vx-underground on X: "I'm actually laughing. One of the compromises is so dumb"
- German parliament suffers suspected cyber attack during Zelenskyy’s visit
- Während Selenskyj-Besuch: Große Internet-Störung im Bundestag! | Politik | BILD.de
- Germany summons Russian ambassador over cyberattack, election disinformation | The Record from Recorded Future News
- Russische hackgroep had toegang tot openbare waterfontein in Nederland | de Volkskrant
- Most Parked Domains Now Serving Malicious Content – Krebs on Security
- PornHub extorted after hackers steal Premium member activity data
- Office of Public Affairs | Senior Manager for Government Contractor Charged in Cybersecurity Fraud Scheme | United States Department of Justice
- Microsoft will finally kill obsolete cipher that has wreaked decades of havoc - Ars Technica
- CVE-2025-66491: Traefik's "Verify=On" Turned TLS Off | AISLE
- Dylan O'Donnell 🦋 on X: "This week I was rushed to hospital with a diagnosis of oesophageal cancer."
dts.podtrac.com -
Risky Biz Soap Box: How to measure vulnerability reachability
In this Soap Box edition of the Risky Business podcast Patrick Gray chats with Socket founder Feross Aboukhadijeh about how to measure the reachability of vulnerabilities in applications.
It’s great to know there’s a CVE in a library you’re using, but it’s even better if you can say whether or not that vulnerability actually impacts your application.
They also talk about how Socket started out as a way to discover malicious packages in software projects, but these days it’s playing the CVE game as well.
This episode is also available on Youtube.
Show notes
dts.podtrac.com -
Risky Business #817 -- Less carnage than your usual Thanksgiving
In this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news. It’s a quiet week with Thanksgiving in the US, but there’s always some cyber to talk about:
- Airbus rolls out software updates after a cosmic ray bitflips an A320 into a dive
- Krebs tracks down a Scattered Lapsus$ Hunters teen through the usual poor opsec…
- … as Wired publishes an opsec guide for teens.
- Microsoft decides its login portal is worth a Content Security Policy
- South Korean online retailer data breach covers 65% of the country
This week’s episode is sponsored by Nebulock. Founder and CEO Damien Lewke joins to talk through their work bringing more SIgma threat detection rules to MacOS.
This episode is also available on Youtube.
Show notes
- Airlines race to fix their Airbus planes after warning solar radiation could cause pilots to lose control | CNN
- Congress calls on Anthropic CEO to testify on Chinese Claude espionage campaign | CyberScoop
- Post-mortem of Shai-Hulud attack on November 24th, 2025 - PostHog
- Update: Shai-Hulud and the npm Ecosystem: Why CTEM Must Extend Beyond Your Walls | Armis
- Glassworm's resurgence | Secure Annex
- 4.3 Million Browsers Infected: Inside ShadyPanda's 7-Year Malware Campaign | Koi Blog
- Post by @spuxx.bsky.social — Bluesky
- Meet Rey, the Admin of ‘Scattered Lapsus$ Hunters’ – Krebs on Security
- The WIRED Guide to Digital Opsec for Teens | WIRED
- Perth hacker Michael Clapsis jailed after setting up fake Qantas Wi-Fi, stealing sex videos - ABC News
- Ed Conway on X: "The person who first downloaded the OBR's document at 11:35 on Budget day (I'm guessing someone at Reuters, given they first reported it) had already guessed the web address and tried and failed to download it 32 times so far that day(!) https://t.co/6iLm2uEUj2" / X
- Reuters accused of hack attack | ZDNET
- The Destruction of a Notorious Myanmar Scam Compound Appears to Have Been ‘Performative’ | WIRED
- Microsoft tightens cloud login process to prevent common attack | Cybersecurity Dive
- Fortinet FortiWeb flaws found in unsupported versions of web application firewall | Cybersecurity Dive
- Cryptomixer platform raided by European police; $29 million in bitcoin seized | The Record from Recorded Future News
- Officials accuse North Korea’s Lazarus of $30 million theft from crypto exchange | The Record from Recorded Future News
- Data breach hits 'South Korea's Amazon,' potentially affecting 65% of country’s population | The Record from Recorded Future News
- NSA Contractor Groomed Teenage Girls On Reddit, DOJ Alleges
- Nebulock developed coreSigma for MacOS
- coreSigma repo:
dts.podtrac.com -
Risky Business #808 -- Insane megabug in Entra left all tenants exposed
On this week’s show Patrick Gray and special guest Rob Joyce discuss the week’s cybersecurity news, including:
- Secret Service raids a SIM farm in New York
- MI6 launches a dark web portal
- Are the 2023 Scattered Spider kids finally getting their comeuppance?
- Production halt continues for Jaguar Land Rover
- GitHub tightens its security after Shai-Hulud worm
This week’s episode is sponsored by Sublime Security. In this week’s sponsor interview, Sublime founder and CEO Josh Kamdjou joins host Patrick Gray to chat about the pros and cons of using agentic AI in an email security platform.
This episode is also available on YouTube
Show notes
- U.S. Secret Service disrupts telecom network that threatened NYC during U.N. General Assembly
- MI6 launches darkweb portal to recruit foreign spies | The Record from Recorded Future News
- One Token to rule them all - obtaining Global Admin in every Entra ID tenant via Actor tokens | dirkjanm.io
- Github npm changes
- Flights across Europe delayed after cyberattack targets third-party vendor | Cybersecurity Dive
- Major European airports work to restore services after cyberattack on check-in systems | The Record from Recorded Future News
- When “Goodbye” isn’t the end: Scattered LAPSUS$ Hunters hack on | DataBreaches.Net
- UK arrests 2 more alleged Scattered Spider hackers over London transit system breach | Cybersecurity Dive
- Alleged Scattered Spider member turns self in to Las Vegas police | The Record from Recorded Future News
- Las Vegas police arrest minor accused of high-profile 2023 casino attacks | CyberScoop
- DOJ: Scattered Spider took $115 million in ransoms, breached a US court system | The Record from Recorded Future News
- vx-underground on X: "Scattered Spider ransoms company for 964BTC - wtf_thats_alot.jpeg - Document says "Cost of BTC at time was $36M" - $36M / 964BTC = $37.5K - BTC value was $37.5K in November, 2023 - Google "Ransomware, November, 2023" - omfg.exe https://t.co/uv2EzbL5HT" | X
- JLR ‘cyber shockwave ripping through UK industry’ as supplier share price plummets by 55% | The Record from Recorded Future News
- Jaguar Land Rover to extend production pause into October following cyberattack | Cybersecurity Dive
- New plan would give Congress another 18 months to revisit Section 702 surveillance powers | The Record from Recorded Future News
- AI-powered vulnerability detection will make things worse, not better, former US cyber official warns | Cybersecurity Dive
dts.podtrac.com -
Risky Business #784 -- GitHub supply chain attack steals secrets from 23k projects
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news:
- Github Actions supply chain attack loots keys and secrets from 23k projects
- Why a VC fund now owns a minority stake in Risky Business Media (!?!?)
- China doxes Taiwanese military hackers
- Microsoft thinks .lnk file whitespace trick isn’t worth patching but APTs sure love it
- CISA delivers government efficiency by re-hiring fired staff… to put them on paid leave
- …and Google acquires Wiz for $32bn
This week’s show is sponsored by Zero Networks, and they have sent along a happy customer to talk about their experience. Aaron Steinke is Head of Infrastructure at La Trobe Financial, an asset management firm in Australia. Aaron talks through bringing modern zero-trust goodness to the reality of a technology environment that’s been around 40 years.
This episode is also available on Youtube.
Show notes
- Risky Bulletin: GitHub supply chain attack prints everyone's secrets in build logs - Risky Business Media
- China says Taiwan's military is behind PoisonIvy APT
- China identifies Taiwanese hackers allegedly behind cyberattacks and espionage | The Record from Recorded Future News
- Crypto exchange OKX shuts down tool used by North Korean hackers to launder stolen funds | The Record from Recorded Future News
- Lazarus Group deceives developers with 6 new malicious npm packages | CyberScoop
- Poisoned Windows shortcuts found to be a favorite of Chinese, Russian, N. Korean state hackers | The Record from Recorded Future News
- 'Mora_001' ransomware gang exploiting Fortinet bug spotlighted by CISA in January | The Record from Recorded Future News
- Black Basta uses brute-forcing tool to attack edge devices | Cybersecurity Dive
- Alleged Russian LockBit developer extradited from Israel, appears in New Jersey court | The Record from Recorded Future News
- CISA works to contact probationary employees for reinstatement after court order - Nextgov/FCW
- ‘People Are Scared’: Inside CISA as It Reels From Trump’s Purge | WIRED
- The Wiretap: CISA Staff Are Cautiously Optimistic About Trump’s Pick For Director
- White House instructs agencies to avoid firing cybersecurity staff, email says | Reuters
- Signal no longer cooperating with Ukraine on Russian cyberthreats, official says | The Record from Recorded Future News
- Telegram CEO Pavel Durov allowed to leave France amid investigation
- Appellate court upholds sentence for former Uber cyber executive Joe Sullivan | The Record from Recorded Future News
- Google buys cloud security provider Wiz for $32 billion | The Record from Recorded Future News
- Pat Gray, Founder of Risky Business, Joins Decibel as Founder Advisor - Decibel
dts.podtrac.com -
Risky Business #779 -- DOGE staffer linked to The Com
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- Musk’s DOGE kid has a history with The Com
- Paragon fires Italy as a spyware customer
- Thailand cuts power to scam compounds…
- … and arrests Phobos/8Base Russian cybercrims
- The CyberCX DFIR report shows non-U2F MFA is well and truly over
- And much, much more.
This week’s episode is sponsored by Dropzone.AI. They make an AI SOC analysis platform that relieves your analysts of the necessary but tedious work, so they can focus on the value of human insight. Dropzone’s founder and CEO Edward Wu joins to talk about how they approach the problem.
This episode is also available on Youtube.
Show notes
- Teen on Musk’s DOGE Team Graduated from ‘The Com’ – Krebs on Security
- ACLU Warns DOGE’s ‘Unchecked’ Access Could Violate Federal Law | WIRED
- Lawsuit accuses Trump administration of violating federal information security law | The Record from Recorded Future News
- The Recruitment Effort That Helped Build Elon Musk’s DOGE Army | WIRED
- States prepare privacy lawsuit against DOGE over access to federal data | The Record from Recorded Future News
- Union groups sue Treasury over giving DOGE access to sensitive data | The Record from Recorded Future News
- Student group sues Education Department over reported DOGE access to financial aid databases | The Record from Recorded Future News
- Hackers exploiting bug in popular Trimble Cityworks tool used by local gov’ts | The Record from Recorded Future News
- DeepSeek iOS app sends data unencrypted to ByteDance-controlled servers - Ars Technica
- DeepSeek Is a Win for Chinese Hackers - Risky Business
- Owner of spyware used in alleged WhatsApp breach ends contract with Italy | WhatsApp | The Guardian
- Another person targeted by Paragon spyware comes forward | TechCrunch
- Apple fixes security flaw allowing third-party access to locked devices | The Record from Recorded Future News
- U.S. sanctions bulletproof hosting provider for supplying LockBit infrastructure | CyberScoop
- Thailand cuts power supply to Myanmar scam hubs | The Record from Recorded Future News
- 8Base ransomware site taken down as Thai authorities arrest 4 connected to operation | The Record from Recorded Future News
- Two Russian nationals arrested in takedown of Phobos ransomware infrastructure | The Record from Recorded Future News
- The Company Man: Binance exec detained in Nigeria breaks his silence | The Record from Recorded Future News
- Deloitte pays $5M in connection with breach of Rhode Island benefits site | Cybersecurity Dive
- DFIR - Threat Report 2025 | CyberCX
- Request a Demo | Dropzone AI
dts.podtrac.com -
Risky Business #792 -- Beware, Coinbase users. Crypto thieves are taking fingers now
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news:
- TeleMessage memory dumps show up on DDoSecrets
- Coinbase contractor bribed to hand over user data
- Telegram does seem to be actually cooperating with law enforcement
- Britain’s legal aid service gets 15 years worth of applicant data stolen
- Shocking no one, Ivanti were weaseling when they blamed latest bugs on a third party library
This week’s episode is sponsored by Prowler, who make an open source cloud security tool. Founder and original project developer Toni de la Fuente joins to talk through the flexibility that open tooling brings. Prowler is also adding support for SaaS platforms like M365, and of course, an AI assistant to help you write checks!
This episode is also available on Youtube.
Show notes
- TeleMessage - Distributed Denial of Secrets
- How the Signal Knockoff App TeleMessage Got Hacked in 20 Minutes | WIRED
- Coinbase says thieves stole user data and tried to extort $20M
- Hack could cost Coinbase up to $400M: filing | Cybersecurity Dive
- Severed Fingers and ‘Wrench Attacks’ Rattle the Crypto Elite
- Money Stuff: US Debt Rates Itself | NewsletterHunt
- 2 massive black market services blocked by Telegram, messaging app says | Reuters
- Telegram Gave Authorities Data on More than 20,000 Users
- GovDelivery, an email alert system used by governments, abused to send scam messages | TechCrunch
- ATO warning as hackers steal $14,000 in tax returns: ‘Be wary’
- Hack of SEC social media account earns 14-month prison sentence for Alabama man | The Record from Recorded Future News
- 19-year-old accused of largest child data breach in U.S. agrees to plead guilty
- Beach mansion, Benz and Bitcoin worth $4.5m seized from League of Legends hacker Shane Stephen Duffy | 7NEWS
- Pegasus spyware maker rebuffed in efforts to get off trade blacklist - The Washington Post
- Ransomware attack hits supplier of refrigerated groceries to British supermarkets | The Record from Recorded Future News
- UK government confirms massive data breach following hack of Legal Aid Agency | The Record from Recorded Future News
- Ivanti Endpoint Mobile Manager customers exploited via chained vulnerabilities | Cybersecurity Dive
- Expression Payloads Meet Mayhem - Ivanti EPMM Unauth RCE Chain (CVE-2025-4427 and CVE-2025-4428)
dts.podtrac.com -
Risky Business #780 -- ASD torched Zservers data while admins were drunk
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- Australian spooks scrubbed Medibank data off Zservers bulletproof hosting
- Why device code phishing is the latest trick in confusing poor users about cloud authentication
- Cloudflare gets blocked in Spain, but only on weekends and because of… football?
- Palo Alto has yet another dumb bug
- Adam gushes about Qualys’ latest OpenSSH vulns
Enterprise browser maker Island is this week’s sponsor and Chief Customer Officer Bradon Rogers joins the show to talk about how the adoption of AI everywhere is causing headaches.
This episode is also available on Youtube.
Show notes
- Five Russians went out drinking. When they got back, Australia had struck
- Dutch police say they took down 127 servers used by sanctioned hosting service | The Record from Recorded Future News
- Further cyber sanctions in response to Medibank Private cyberattack | Defence Ministers
- What is device code phishing, and why are Russian spies so successful at it? - Ars Technica
- Anyone Can Push Updates to the DOGE.gov Website
- Piracy Crisis: Cloudflare Says LaLiga Knew Dangers, Blocked IP Address Anyway (Update) * TorrentFreak
- Palo Alto Networks warns firewall vulnerability is under active exploitation | Cybersecurity Dive
- Qualys TRU Discovers Two Vulnerabilities in OpenSSH: CVE-2025-26465 & CVE-2025-26466 | Qualys Security Blog
- China’s Salt Typhoon hackers targeting Cisco devices used by telcos, universities | The Record from Recorded Future News
- RedMike Exploits Unpatched Cisco Devices in Global Telecommunications Campaign
- A Hacker Group Within Russia’s Notorious Sandworm Unit Is Breaching Western Networks | WIRED
- How Phished Data Turns into Apple & Google Wallets – Krebs on Security
- New hack uses prompt injection to corrupt Gemini’s long-term memory
- Arizona woman pleads guilty to running laptop farm for N. Korean IT workers, faces 9-year sentence | The Record from Recorded Future News
- US reportedly releases Russian cybercrime figure Alexander Vinnik in prisoner swap | The Record from Recorded Future News
- EXCLUSIVE: A Russia-linked Telegram network is inciting terrorism and is behind hate crimes in the UK – HOPE not hate
- Remembering David Jorm - fundraising for Mental Health research
dts.podtrac.com